[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: IV Generation




> Hi,
>
>
> Once after the completion of Transaction Exchange for Xauth then I have a
> question regarding the generation of IV which will be used in QuickMode.
> Should I use the the result of encryption/decryption of the  last
ciphertext
> block of the phase 1 message for the genration of IV  which is used  in
> quickMode or else should I consider  result of encryption/decryption of
the
> last ciphertext block of the Transaction Exchange message(last cipher text
> block of ISAKMP-CFG-ACK)  for the generation of IV which will be used in
> QuickMode?

Follow the same rule as you would for any other "phase 2" exchange, such as
Config-Mode, Quick Mode, New Group Mode.  The IV derivation is based of the
last ciphertext block of the phase 1 message.


>
> bye
>    vamsi
>
>
>
>
>
> **************************************************************
> Wealth is lost Nothing is lost
> Health is lost Something is lost
> Character is lost Everything is lost
>
> ****************************************************************