Re: [IPsec] STRONG NUDGE: WG Last Call on draft-ietf-ipsecme-oob-pubkey

2013-04-23 Thread Cuiyang
Support this draft to go on to IETF review. I have read this draft and feel that it is useful to let IKEv2 support more types of raw public keys, such as ECC. The certificate encoding has used a new format and obsoleted the old RSA public key format "11". And if such an old encoding is received,

Re: [IPsec] Comments to the draft-zhang-ipsecme-multi-path-ipsec-02

2012-11-04 Thread Cuiyang
I am afraid that only multi-paths cannot enhance the security. As Tero commented, if one can decrypt one path, then it is a successful security breach already. I think the point is that what is the definition of "insecure network", and the definition of the "security" here. From a cryptographic

Re: [IPsec] New Version Notification for draft-nir-ipsecme-erx-03.txt

2012-05-08 Thread Cuiyang
Hi, all > So if any of you are interested, and are willing to review, please let us > know. I would like to review this draft. Cheers, Yang == Yang Cui, Ph.D. Huawei Technologies cuiy...@huawei.com > -邮件原件- > 发件人: ipsec-boun...@ietf.org [mailto:ipsec-boun...@ietf.or