[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

IKEv2 tunnel changes for ECN



The "small draft" I promised to write on this topic
is available at:

http://members.bellatlantic.net/~vze4kfz2/drafts/draft-black-ipsec-ikev2-ecn
fix-00.txt

while the secretariat works on getting it onto the
I-D servers.

The draft specifies changes to IPsec tunnel decapsulation
so that ECN "just works" for any tunnel-mode SA created
by IKEv2 in order to avoid carrying the existing ECN
negotiation for IKEv2 forward to IKEv2.  It is intended
to be superseded by 2401bis when that draft is ready,
but is being done now to try to avoid carrying the
negotiation forward.  Please note the open issue
described in Section 5.2.

Thanks,
--David

----------------------------------------------------
David L. Black, Senior Technologist
EMC Corporation, 176 South St., Hopkinton, MA  01748
+1 (508) 293-7953             FAX: +1 (508) 293-7786
black_david@xxxxxxx        Mobile: +1 (978) 394-7754
----------------------------------------------------