Re: IKEV2: Issue #4 Revised Identity

Pekka Riikonen <priikone@xxxxxx> writes:
> All this would require revising the specs for CR payload handling, and
> addition of new Certificate Encoding types.  The benefits is that no new
> payloads are introduced, the use of CR payload is made explicit, new
> encoding types are easy to add, and the verification of whether the cached
> cert is correct or not can be done.  Whether or not changing/adding this
> sort of thing would be acceptable, I don't know. :)
I think this is a good idea.


[Eric Rescorla                                   ekr@xxxxxxxx]