Yaron: 3.3.2: there is no explanation here or elsewhere that the D-H transform for ESP and AH is used for PFS.
Paul (off list): Not done. I don't think it belongs in 3.3.2, and I also don't agree that the transform is "the D-H transform for ESP and AH is used for PFS"; that's an oversimplification. Yaron: I will settle for 1.3.1, and/or 1.3.3.
smime.p7s
Description: S/MIME cryptographic signature
_______________________________________________ IPsec mailing list IPsec@ietf.org https://www.ietf.org/mailman/listinfo/ipsec