[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

explicite or implicit IV for ike encryption



in the rfc, there are a lot of text in the appendix (rfc2409) to explain
how to choose the Initial value for the encryption of the ike packet and
the way to avoid to be out of sync. so i doubt...

the encryption use a explicit IV (as in rfc2405 in case of DES ) 
or an implicit one (as imply the text about the "out of sync") ?

i have assumed a explicit one, because an implicit one is difficult
(impossible ?) to handle in case of a network congestion.