[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

cisco's ISAKMP



  Cisco Systems is pleased to announce the release of their ISAKMP daemon.
This software distribution is being made available free of charge for any
commercial or non-commercial use to advance ISAKMP as a solution to
Internet Key Management.

  To software can be downloaded by telneting to port 7600 on ftp-eng.cisco.com
and following the directions from there. 

  This daemon uses the PF_KEY Key Management API to register with a
kernel which has implemented this API and the surrounding key management
infrastructure. The NRL IPsec software distribution (currently bundled with
IPv6) is such an implementation. Security associations negotiated by the
ISAKMP daemon are inserted into the kernel's key engine and are available
for use by its AH/ESP security mechanisms. To facilitate use of this ISAKMP 
daemon, the NRL distribution is also being made available on ftp-eng
using the telnet procedure described above.

  Cisco's daemon is based on ISAKMP draft version 5 and utilizes features from
the Oakley Key Determination Protocol draft version 1. 

  This distribution comes with a cryptographic library from Cylink Corporation.
Cylink has granted Cisco the right to offer this library-- source code to
the Diffie-Hellman key exchange, the Digital Signature Standard, and the
Digital Encryption Standard-- to all third parties on a royalty-free basis
for use only with this ISAKMP reference implementation.

  A mailing list for problems, bug fixes, porting changes, and general
discussion of ISAKMP and Oakley has been established: isakmp-oakley@cisco.com 
(majordomo@cisco.com for admin requests).