[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Hash and Prf in IKE



Hello,

I have one problem with IKE, in RFC 2409 in section
3.2 is written:

  "prf(key, msg) is the keyed pseudo-random function--
often a keyed hash function"

And in section 5:
   "Four different authentication methods are allowed
with either Main Mode or Aggressive Mode-- digital
signature, two forms of authentication with public key
encryption, or pre-shared key. The value SKEYID is
computed seperately for each authentication method.

For public key encryption: 
SKEYID = prf(hash(Ni_b | Nr_b), CKY-I | CKY-R)"
 
 - and here is the my problem problem prf function is
used to generate HASH_I and HASH_R as a a keyed hash
function and nowhere in the document I found what
"hash(Ni_b|Nr_b)" means.
 
Can anybody tell me?

Thans, 

  Eva Jencusova


__________________________________________________
Do You Yahoo!?
Make international calls for as low as $.04/minute with Yahoo! Messenger
http://phonecard.yahoo.com/