Hi ipsecme, This update modifies the IKEv2 mechanism to use notifications instead of transforms as requested during the previous IETF. It also modifies the IPTFS payload header to use an iniital octet to identify the rest of the payload.
I believe other any changes need more WG discussion, and so I'll start new email threads for those topics. Thanks, Chris. > On Mar 2, 2020, at 8:25 AM, internet-dra...@ietf.org wrote: > > > A New Internet-Draft is available from the on-line Internet-Drafts > directories. > This draft is a work item of the IP Security Maintenance and Extensions WG of > the IETF. > > Title : IP Traffic Flow Security > Author : Christian Hopps > Filename : draft-ietf-ipsecme-iptfs-01.txt > Pages : 25 > Date : 2020-03-02 > > Abstract: > This document describes a mechanism to enhance IPsec traffic flow > security by adding traffic flow confidentiality to encrypted IP > encapsulated traffic. Traffic flow confidentiality is provided by > obscuring the size and frequency of IP traffic using a fixed-sized, > constant-send-rate IPsec tunnel. The solution allows for congestion > control as well. > > > The IETF datatracker status page for this draft is: > https://datatracker.ietf.org/doc/draft-ietf-ipsecme-iptfs/ > > There are also htmlized versions available at: > https://tools.ietf.org/html/draft-ietf-ipsecme-iptfs-01 > https://datatracker.ietf.org/doc/html/draft-ietf-ipsecme-iptfs-01 > > A diff from the previous version is available at: > https://www.ietf.org/rfcdiff?url2=draft-ietf-ipsecme-iptfs-01 > > > Please note that it may take a couple of minutes from the time of submission > until the htmlized version and diff are available at tools.ietf.org. > > Internet-Drafts are also available by anonymous FTP at: > ftp://ftp.ietf.org/internet-drafts/ > > > _______________________________________________ > IPsec mailing list > IPsec@ietf.org > https://www.ietf.org/mailman/listinfo/ipsec > _______________________________________________ IPsec mailing list IPsec@ietf.org https://www.ietf.org/mailman/listinfo/ipsec