And most of these are considered dangerous and are generally discouraged.

http://tools.ietf.org/html/rfc6398

Cheers, Manav 

-----Original Message-----
From: ipsec-boun...@ietf.org [mailto:ipsec-boun...@ietf.org] On Behalf Of RJ 
Atkinson
Sent: Tuesday, January 03, 2012 6:18 AM
To: IPsec ME WG List
Subject: Re: [IPsec] Avoiding Authentication Header (AH)


On 02  Jan 2012, at 19:21 , Jack Kohn wrote:

> And last but certainly not the least, why cant somebody use ESP-NULL 
> in the tunnel mode to protect the IP headers (including FIPS-188 IP 
> option that i have never seen anyone ever using).

As noted originally, those options need to be seen and their contents 
considered by transit devices. 

Ran

_______________________________________________
IPsec mailing list
IPsec@ietf.org
https://www.ietf.org/mailman/listinfo/ipsec
_______________________________________________
IPsec mailing list
IPsec@ietf.org
https://www.ietf.org/mailman/listinfo/ipsec

Reply via email to