Re: Status of Seamoby drafts
Rajeev Koodli <[email protected]> Fri, 16 Jul 2004 15:23:42 -0700
| Newsgroups | gmane.ietf.seamoby |
|---|---|
| Organization | Nokia Research Center |
| Message-ID | <[email protected]> |
Vijay, Jim, Vijay Devarapalli wrote: > > Since context transfer security is an n by n problem, establishing the SAs > > to protect inter-router transfers is not an easy thing. For this reason one > > might conclude that pre-shared keys are difficult, since n(n-1) of them > > would be necessary. On the other hand, is it being suggested that each > > router needs to be provisioned with a certificate? On reading the draft it > > isn't clear what's being recommended (or even considered). > I could not parse the "n by n" problem. Any pointers ? Why is the order higher than pairwise SA between routers, which might already exist ? -Rajeev > > this comment is valid. but since we assume the access routers are > part of the same administrative domain, they are provisioned with > the required certificates to run IKE. (?) > > Vijay > > _______________________________________________ > Seamoby mailing list > [email protected] > https://www1.ietf.org/mailman/listinfo/seamoby