Dan, [clipped] > Because it's unnecessary bloat that another group may not have any > use for. ESP-null could be used, for instance, to protect > packets in an > EGP routing protocol. There is no need for WESP in such an > environment.
EGP routing protocols, by definition and design, will traverse multiple autonomous systems, and there could very well be a policy on the edge of one such AS that could deny entry to any traffic that it doesn't recognize. Using WESP will clearly help in such cases. Cheers, Manav _______________________________________________ IPsec mailing list IPsec@ietf.org https://www.ietf.org/mailman/listinfo/ipsec