When I negotiate an ESP SA with DES encryption and an MD5 HMAC, I obviously need 64 + 128 = 196 bits of keying material from Oakley. I can't seem to find a reference as to which 64 bits are used for the DES key and which for the MD5 key. Can anyone give me a pointer? Thanks, ben