pasi.ero...@nokia.com writes:
> I'm OK with either one (but AH is a very stable and mature protocol,
> so while it's not as widely used, I would expect the level of testing
> has been quite substantial...).

I think I last tested AH in interop events in San-Diego interop 2000
or so. We might have done some testing also in 2001 Espoo interop. And
some of that testing was for IPv6 conformance testing, and others were
those implementations which didn't support authentication in ESP, so
AH+ESP was only way to get authentication for ESP with them.

I do not think any of the IKEv2 interops tested anything with AH.

So stable and mature yes, not so sure about level of testing, as even
those ikev1 ah-tests was just basic ping tests, without any IP-options
or similar. 

> > I will submit new draft tomorrow (before I leave for one week long
> > vacation).
> 
> I'm leaving for one-week-long trip tomorrow (Friday), so if there's
> any chance you could get an update in today, I could ask the
> secretariat to start IETF last call :-)

Ok, I will send new one now (hopefully I do not need to update xml2rfc
again this time, I did it already yesterday :-)
-- 
kivi...@iki.fi
_______________________________________________
IPsec mailing list
IPsec@ietf.org
https://www.ietf.org/mailman/listinfo/ipsec

Reply via email to