All, 
As we prepare to submit the next revision of the WESP draft, we wanted to
get some discussion / feedback on some open ticket items.

Issue #90: shorter WESP negotiation

In the current traffic visibility draft, we indicate that WESP can be
negotiated via IKEv2 using a new protocol identifier. 
Charlie Kaufman suggested that it may be plausible to use a notification
method along the lines of USE_TRANSPORT_MODE in RFC 4306, where the type of
transport is negotiated independently of the cryptographic parameters. 

Pros: Shorted negotiation using notifications.
Cons: Some flexibility is lost in not being able to negotiate different
Crypto algorithms combinations with/without WESP.       

Comments / opinions appreciated...

Thanks, 
- Ken
_______________________________________________
IPsec mailing list
IPsec@ietf.org
https://www.ietf.org/mailman/listinfo/ipsec

Reply via email to