Re: [IPsec] Call for adoption on draft-fluhrer-qr-ikev2 as an IPSecME WG document

2016-06-24 Thread Rodney Van Meter
> On Jun 24, 2016, at 7:06 PM, David McGrew wrote: > > > Because QKD is not a practical system for Internet security. It has serious > security issues/challenges and operational limitations on bitrate, range, and > physical media. It requires a point to point optical link, which is > typ

[IPsec] ipsecme - Requested session has been scheduled for IETF 96

2016-06-24 Thread "IETF Secretariat"
Dear David Waltermire, The session(s) that you have requested have been scheduled. Below is the scheduled session information followed by the original request. ipsecme Session 1 (2:00:00) Tuesday, Afternoon Session I 1400-1600 Room Name: Charlottenburg I size: 80

Re: [IPsec] Call for adoption on draft-fluhrer-qr-ikev2 as an IPSecME WG document

2016-06-24 Thread Scott Fluhrer (sfluhrer)
> -Original Message- > From: Paul Wouters [mailto:p...@nohats.ca] > Sent: Friday, June 24, 2016 9:43 AM > To: David McGrew (mcgrew) > Cc: Waltermire, David A. (Fed); IPsecME WG; Scott Fluhrer (sfluhrer); Panos > Kampanakis (pkampana) > Subject: Re: [IPsec] Call for adoption on draft-fluhre

Re: [IPsec] Call for adoption on draft-fluhrer-qr-ikev2 as an IPSecME WG document

2016-06-24 Thread Waltermire, David A. (Fed)
Comments below. > > In contrast, QR-IKEv2 can be used to add postquantum security between > any two points on the globe, without requiring dedicated fiber, and without > requiring physical layer security assumptions. It has *fewer* security > assumptions than draft-nagayama-ipsecme-ipsec-with-qk

Re: [IPsec] Call for adoption on draft-fluhrer-qr-ikev2 as an IPSecME WG document

2016-06-24 Thread David McGrew
Hi Paul, > On Jun 24, 2016, at 9:43 AM, Paul Wouters wrote: > > On Fri, 24 Jun 2016, David McGrew wrote: > > Hi David, > >> Because QKD is not a practical system for Internet security. It has >> serious security issues/challenges and operational limitations on bitrate, >> range, and physic

Re: [IPsec] Call for adoption on draft-fluhrer-qr-ikev2 as an IPSecME WG document

2016-06-24 Thread Paul Wouters
On Fri, 24 Jun 2016, Rodney Van Meter wrote: We were encouraged by the ADs and a few others to rework the draft to focus more on generic uses of out-of-band generated key material, but we haven’t managed to put together the right set of hours to get it done. At least one person said, “It may b

Re: [IPsec] Call for adoption on draft-fluhrer-qr-ikev2 as an IPSecME WG document

2016-06-24 Thread Paul Wouters
On Fri, 24 Jun 2016, David McGrew wrote: Hi David, Because QKD is not a practical system for Internet security. It has serious security issues/challenges and operational limitations on bitrate, range, and physical media. It requires a point to point optical link, which is typically dedic

Re: [IPsec] Call for adoption on draft-fluhrer-qr-ikev2 as an IPSecME WG document

2016-06-24 Thread Rodney Van Meter
> On Jun 24, 2016, at 7:06 PM, David McGrew wrote: > > Hi Paul, > >> On Jun 23, 2016, at 6:55 PM, Panos Kampanakis (pkampana) >> wrote: >> >> Introducing quantum computer resistance in IKEv2 helps to avoid the >> implications of having sec admins that want to have quantum computer >> resis

Re: [IPsec] Call for adoption on draft-fluhrer-qr-ikev2 as an IPSecME WG document

2016-06-24 Thread David McGrew
Hi Paul, > On Jun 23, 2016, at 6:55 PM, Panos Kampanakis (pkampana) > wrote: > > Introducing quantum computer resistance in IKEv2 helps to avoid the > implications of having sec admins that want to have quantum computer > resistance revert back to IKEv1 with shared secrets. The draft adds qua