[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: IKEv2 (son-of-ike) draft



Jan Vilhuber <vilhuber@cisco.com> writes:

> round and now we can't get rid of it and even have group-keys. Gah! What's so
> hard about configuring an RSA key?

Lack of a standard way of doing it...  Do you use raw RSA N/e, PGP key
format, X.509 format?  If a certificate format (PGP/X.509/etc) what
signatures are required, if any?  IKE doesn't specify any of this, and
quite frankly a number of implementations do it differently.

-derek

-- 
       Derek Atkins, SB '93 MIT EE, SM '95 MIT Media Laboratory
       Member, MIT Student Information Processing Board  (SIPB)
       URL: http://web.mit.edu/warlord/    PP-ASEL-IA     N1NWH
       warlord@MIT.EDU                        PGP key available


Follow-Ups: References: