[IPsec] Re: I-D Action: draft-ietf-ipsecme-g-ikev2-17.txt

2024-12-03 Thread Tero Kivinen
Antony Antony writes: > For the transform name, I prefer Anti-Replay Protection (ARP), as > Anti-Replay Service is already a term used in the IPsec architecture > document RFC 4301. I believe keeping this name > for the transform aligns well with the terminology. Please read 4301 before > sugge

[IPsec] Re: I-D Action: draft-ietf-ipsecme-g-ikev2-17.txt

2024-12-03 Thread Valery Smyslov
Hi Tero, > > Some candidates: > > > > Sequence Number Properties (SNP) > > Sequence Number Interpretation (SNI) (can be mixed up with SNI in TLS) > > Sequence Number Features (SNF) > > > > Thoughts? Other proposals? > > All of those works for me, just pick whatever you like. SNP sounds fine.

[IPsec] [IANA #1399992] expert review for draft-ietf-ipsecme-g-ikev2 (ikev2-parameters)

2024-12-03 Thread Tero Kivinen
David Dong via RT writes: > Dear Tero Kivinen, (cc: ipsecme WG), > > As a designated expert for the Internet Key Exchange Version 2 > (IKEv2) Parameters registries, can you review the proposed > registrations in draft-ietf-ipsecme-g-ikev2-17 for us? Please note > that Valery Smyslov is a co-author

[IPsec] IPsecME rechartering

2024-12-03 Thread Tero Kivinen
We have now finished our discussion about the IPsecME WG rechartering. Here is the proposed new charter: -- The IPsec suite of protocols includes IKEv1 (RFC 2409 and associated RFCs, IKEv1 is now obsoleted), IKEv2 (RFC 7296), the

[IPsec] Re: [***SPAM***] Re: [Last-Call] Secdir last call review of draft-ietf-ipsecme-g-ikev2-17

2024-12-03 Thread Valery Smyslov
Hi Russ, please see inline (I removed parts where we are in agreement). > Valery: > > >> I find the use of GIKE_REKEY and GSA_REKEY a little bit confusing. > >> I think it would help the reader if these were discussed a bit in the Introduction. > > > > GSA_REKEY is an type of G-IKEv2 (pseudo) ex

[IPsec] Re: IPsecME rechartering

2024-12-03 Thread Michael Richardson
Tero Kivinen wrote: > Postquantum Cryptography brings new authentication methods. The (rant about "quantum-safe" term omitted) ... > The ESPv3 protocol was defined in 2005 and there has been seen that > there might be some need to make enhancements to it. The working group > will a