IETF RFC 5723 PDF

IETF RFC 5723 PDF

Name:
IETF RFC 5723 PDF

Published Date:
01/01/2010

Status:
[ Active ]

Description:

Internet Key Exchange Protocol Version 2 (IKEv2) Session Resumption

Publisher:
Internet Engineering Task Force

Document status:
Active

Format:
Electronic (PDF)

Delivery time:
10 minutes

Delivery time (for Russian version):
200 business days

SKU:

Choose Document Language:
$11.7
Need Help?

The Internet Key Exchange version 2 (IKEv2) protocol has a certain computational and communication overhead with respect to the number of round trips required and the cryptographic operations involved. In remote access situations, the Extensible Authentication Protocol (EAP) is used for authentication, which adds several more round trips and consequently latency.

To re-establish security associations (SAs) upon a failure recovery condition is time consuming especially when an IPsec peer (such as a VPN gateway) needs to re-establish a large number of SAs with various endpoints. A high number of concurrent sessions might cause additional problems for an IPsec peer during SA re-establishment.

In order to avoid the need to re-run the key exchange protocol from scratch, it would be useful to provide an efficient way to resume an IKE/IPsec session. This document proposes an extension to IKEv2 that allows a client to re-establish an IKE SA with a gateway in a highly efficient manner, utilizing a previously established IKE SA.

A client can reconnect to a gateway from which it was disconnected. The proposed approach encodes partial IKE state into an opaque ticket, which can be stored on the client or in a centralized store, and is later made available to the IKEv2 responder for reauthentication. We use the term ticket to refer to the opaque data that is created by the IKEv2 responder. This document does not specify the format of the ticket but examples are provided.


Edition : 10
File Size : 1 file , 37 KB
Number of Pages : 26
Published : 01/01/2010

History


Related products


Best-Selling Products

AN 3054
Published Date: 03/25/1988
Nut, Coupling, Electrical Conduit - INACTIVE for New Design after 4/15/98
AN 316
Published Date: 02/25/1991
Nut, Jam, Hexagon
AN 6021
Published Date: 02/01/1969
Gage, Panel Mounting Low Pressure Oxygen - with Notice 1, 12/88
AN 6235
Published Date: 11/04/1952
Filter Element - Hydraulic Replaceable Micronic Line Type - INACTIVE for NEW DESIGN - after 1/22/99
AN 6236
Published Date: 03/27/1951
Filter Element - Hydraulic Replaceable Micronic Reservoir
AN 6249
Published Date: 09/30/1959
Valve, 3000 PSI Hydraulic Check