[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: [Ipsec] OT: cryptographic parameters - performance data



-----BEGIN PGP SIGNED MESSAGE-----


>>>>> "Bob" == Bob Arthurs <bob_arthurs@hotmail.com> writes:
    Bob> On a second point, could anyone tell me what specific
    Bob> advantages of using the same cryptographic parameters
    Bob> (encryption/hash algorithms) for both IKE and IPSec SAs? 

  Simplicity in documentation of configuration parameters.
  
    Bob> instinctively it seems better, but is it fair to say that it
    Bob> will improve performance between peers if the the same
    Bob> algorithms are used, and if so why in particular?

  It would be a very unusual implementation where this was true.

  I can't think of a way even construct a system where this would be
true.

- --
]     "Elmo went to the wrong fundraiser" - The Simpson         |  firewalls  [
]   Michael Richardson,    Xelerance Corporation, Ottawa, ON    |net architect[
] mcr@xelerance.com      http://www.sandelman.ottawa.on.ca/mcr/ |device driver[
] panic("Just another Debian GNU/Linux using, kernel hacking, security guy"); [
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.2.2 (GNU/Linux)
Comment: Finger me for keys

iQCVAwUBQMnp5IqHRg3pndX9AQGCNgQAm5M/4qCIOux4i0J2+Z1X/OjZUxvAfdI5
EHVBmiW7LPX3kffLKNC78Tc/XMADAn3m4GToQHPjcYKDlxBeLX1L5TR+pK+U7MAi
6/ePsaa+ymwNpTAELthKSpyQL0Dc1IeExbO/k2SbpDRf28C3YLYdljjL7jLvv/Z4
H6IF+wcON+4=
=tm0Y
-----END PGP SIGNATURE-----

_______________________________________________
Ipsec mailing list
Ipsec@ietf.org
https://www1.ietf.org/mailman/listinfo/ipsec