I tend to agree with Steve that we ought to be able to share the key management mechanisms. Why not setup a parallel WG to work on the key mgmt aspects while the IP Security WG works on the authentication/confidentiality mechanisms for IP ?? Ran atkinson@itd.nrl.navy.mil --