[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: forward secrecy




[personal commentary]

I disagree with Ashar's assumptions about the threat environment.  As
Bob Moscowitz (Chrysler) stated at the IPsec meeting in Dallas, there
is a very real and legitimate need for Perfect Forward Secrecy that
SKIP does not provide.  I don't find obfuscation of reality to
be productive.

[observation as co-chair]

There was a clear explanation of what Perfect Forward Secrecy meant and 
why it is necessary during the Dallas IETF meeting.  There was then
discussion within the working group during the meeting.  At the end of
that discussion it was very clear that there is smooth (not rough,
but smooth) consensus within the WG that Perfect Forward Secrecy remains
a key management requirement of the WG.  This matter has been discussed
repeatedly in the past and the group has consistently reached the same
consensus conclusion.


Ran
rja@cisco.com