[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: Increased sequence number in ESP/AH




 >>>>> "Stephen" == Stephen Kent <kent@bbn.com> writes:
     Stephen> My proposal calls for the extended sequence numbers to NOT occupy any 
     Stephen> more space in the ESP or AH headers. Instead, use of these numbers 
     Stephen> would be negotiated by IKE, so that interoperability would be 

   So, as I understand this note, it simply allows to hosts to agree to not
rekey after 2^32 packets, but rather go to a much higher number.

   I can see the benefit of this for extremely high bandwidth devices, but
even at OC-768 is it really necessary? 
   Is there more than you can tell about the intended application of this?

] Train travel features AC outlets with no take-off restrictions|gigabit is no[
]   Michael Richardson, Solidum Systems   Oh where, oh where has|problem  with[
]     mcr@solidum.com   www.solidum.com   the little fishy gone?|PAX.port 1100[
] panic("Just another NetBSD/notebook using, kernel hacking, security guy");  [



Follow-Ups: References: