Re: [IPsec] New version of labeled ipsec drafts

2009-07-17 Thread Joy Latten
Hi Greg, Greg Daley wrote: > > > Hi Joy, > > Couldn't the security context information be expressed in the IKEv2 > version as a new Traffic Selector type? > > It seems that the IKEv2 negotiation exchanges a parameter set > that describes the upper-layer data to pass over the ESP or AH > SA. >

Re: [IPsec] New version of labeled ipsec drafts

2009-07-12 Thread Greg Daley
Hi Joy, Couldn't the security context information be expressed in the IKEv2 version as a new Traffic Selector type? It seems that the IKEv2 negotiation exchanges a parameter set that describes the upper-layer data to pass over the ESP or AH SA. This is what the Traffic Selectors in IKEv2 do.