Re: [IPsec] FW: I-D Action:draft-ietf-ipsecme-aes-ctr-ikev2-01.txt

2009-08-19 Thread Yaron Sheffer
Hi Sean, I agree with Tero that including the table in the document is redundant and confusing. Removing it would add clarity, more than your proposed text IMO. Regarding padding, you are right that the recipient should accept anything, but you can still repeat the sentence AES-CTR does not

Re: [IPsec] FW: I-D Action:draft-ietf-ipsecme-aes-ctr-ikev2-01.txt

2009-08-19 Thread Tero Kivinen
Sean Shen writes: The point here is to say that integrity protection is needed with aes-ctr, not trying to specify which integrity algorithm to choose. rfc4306 already required integrity for ikev2 and we refered to 4306 here. The choice of integrity algorithm is up to rfc4307 or some update