Re: [TICTOC] IPSec Tunnel for PTP - discussion on the mike

2011-04-01 Thread Yoav Nir
On Mar 31, 2011, at 6:39 PM, Bhatia, Manav (Manav) wrote: > Yoav Nir (from IPSecME) had raised a point suggesting that RFC4301 doesn't > mandate all traffic to go via the IPSec tunnel and one could implement > policies such that PTP traffic doesn't go via the tunnel. This imo will not > work a

[TICTOC] IPSec Tunnel for PTP - discussion on the mike

2011-03-31 Thread Bhatia, Manav (Manav)
Yoav Nir (from IPSecME) had raised a point suggesting that RFC4301 doesn't mandate all traffic to go via the IPSec tunnel and one could implement policies such that PTP traffic doesn't go via the tunnel. This imo will not work as we DO want to provide data integrity protection to PTP so that att