ietf
[Top] [All Lists]

Re: [secdir] Review of draft-manral-ipsec-rfc4305-bis-errata-02.txt

2006-12-13 06:08:17
On Tue, Dec 12, 2006 at 03:38:40PM -0800, Vishwas Manral wrote:
Hi Nico,

I guess there is no denying the points that have been put forward about 
the use of NULL both authentication and encryption algorithms for ESP in 
debugging.

RFC4301 already clearly states:

  Note: A compliant implementation MUST NOT allow instantiation of an
  ESP SA that employs both NULL encryption and no integrity algorithm.

Ah.  Then just add reference to RFC4301, section 4.2, in parenthesis.
That should sufifce.

Thanks,

Nico
-- 

_______________________________________________
Ietf mailing list
Ietf(_at_)ietf(_dot_)org
https://www1.ietf.org/mailman/listinfo/ietf