IETF RFC 5709 PDF

IETF RFC 5709 PDF

Name:
IETF RFC 5709 PDF

Published Date:
10/01/2009

Status:
[ Withdrawn ]

Description:

OSPFv2 HMAC-SHA Cryptographic Authentication

Publisher:
Internet Engineering Task Force

Document status:
Active

Format:
Electronic (PDF)

Delivery time:
10 minutes

Delivery time (for Russian version):
200 business days

SKU:

Choose Document Language:
Need Help?
W/D S/S BY IETF RFC 7474

Introduction

A variety of risks exist when deploying any routing protocol [Bell89]. This document provides an update to OSPFv2 Cryptographic Authentication, which is specified in Appendix D of RFC 2328. This document does not deprecate or supercede RFC 2328. OSPFv2, itself, is defined in RFC 2328 [RFC2328].

This document adds support for Secure Hash Algorithms (SHA) defined in the US NIST Secure Hash Standard (SHS), which is defined by NIST FIPS 180-2. [FIPS-180-2] includes SHA-1, SHA-224, SHA-256, SHA-384, and SHA-512. The Hashed Message Authentication Code (HMAC) authentication mode defined in NIST FIPS 198 is used [FIPS-198].

It is believed that [RFC2104] is mathematically identical to [FIPS-198] and it is also believed that algorithms in [RFC4634] are mathematically identical to [FIPS-180-2].

The creation of this addition to OSPFv2 was driven by operator requests that they be able to use the NIST SHS family of algorithms in the NIST HMAC mode, instead of being forced to use the Keyed-MD5 algorithm and mode with OSPFv2 Cryptographic Authentication. Cryptographic matters are discussed in more detail in the Security Considerations section of this document.

The key words "MUST", "MUST NOT", "REQUIRED", "SHALL", "SHALL NOT", "SHOULD", "SHOULD NOT", "RECOMMENDED", "MAY", and "OPTIONAL" in this document are to be interpreted as described in RFC 2119 [RFC2119].


Edition : 09
Number of Pages : 14
Published : 10/01/2009

History


Related products

IETF RFC 4298
Published Date: 12/01/2005
RTP Payload Format for BroadVoice Speech Codecs
$10.2
IETF RFC 4605
Published Date: 08/01/2006
Internet Group Management Protocol (IGMP) / Multicast Listener Discovery (MLD)-Based Multicast Forwarding ("IGMP/MLD Proxying")
$9.9

Best-Selling Products

NBBI NB23-2007 Part 1
Published Date: 12/31/2007
National Board Inspection Code - NBIC, 2007 Edition - Part 1 - Installation
NBBI NB23-2007 Part 3
Published Date: 12/31/2007
National Board Inspection Code - NBIC, 2007 Edition - Part 3 - Repairs and Alterations
NBBI NB23-2007
Published Date: 12/31/2007
National Board Inspection Code - NBIC, 2007 Edition (Three Volumes)
NBBI NB23-2011 Part 2
Published Date: 2011
National Board Inspection Code - NBIC, 2011 Edition - Part 2 - Inspection
NBBI NB23-2011 Part 3
Published Date: 2011
National Board Inspection Code - NBIC, 2011 Edition - Part 3 - Repairs and Alterations
NBBI NB23-2011
Published Date: 2011
National Board Inspection Code - NBIC, 2011 Edition (Three Volumes)