[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: [saag] Re:




On Friday, May 24, 2002, at 11:00 , Derek Atkins wrote:
> Because IPsec is hop-by-hop but you want RSVP end-to-end.
>
> -derek

Hmm.  I would rather say that RSVP is hop-by-hop and
that (normally) AH/ESP are end-to-end.

However, if one used (for example) AH with an asymmetric algorithm,
one could perform hop-by-hop authentication of the
packet with AH.  This has obvious computational cost
issues so might not be the best choice.

> SatishK Amara <kumar_amara@yahoo.com> writes:
>
>> Why don't you use IPSEC to secure RSVP.
>>
>> Satish Amara