IETF RFC 5660 PDF

IETF RFC 5660 PDF

Name:
IETF RFC 5660 PDF

Published Date:
10/01/2009

Status:
[ Active ]

Description:

IPsec Channels: Connection Latching

Publisher:
Internet Engineering Task Force

Document status:
Active

Format:
Electronic (PDF)

Delivery time:
10 minutes

Delivery time (for Russian version):
200 business days

SKU:

Choose Document Language:
$12.6
Need Help?

This document specifies, abstractly, how to interface applications and transport protocols with IPsec so as to create "channels" by latching "connections" (packet flows) to certain IPsec Security Association (SA) parameters for the lifetime of the connections. Connection latching is layered on top of IPsec and does not modify the underlying IPsec architecture.

Connection latching can be used to protect applications against accidentally exposing live packet flows to unintended peers, whether as the result of a reconfiguration of IPsec or as the result of using weak peer identity to peer address associations. Weak association of peer ID and peer addresses is at the core of Better Than Nothing Security (BTNS); thus, connection latching can add a significant measure of protection to BTNS IPsec nodes.

Finally, the availability of IPsec channels will make it possible to use channel binding to IPsec channels.


Edition : 09
File Size : 1 file , 46 KB
Number of Pages : 31
Published : 10/01/2009

History


Related products

IETF RFC 9533
Published Date: 01/01/2024
One-Way and Two-Way Active Measurement Protocol Extensions for Performance Measurement on a Link Aggregation Group
$10.2
IETF RFC 3537
Published Date: 05/01/2003
Wrapping a Hashed Message Authentication Code (HMAC) key with a Triple-Data Encryption Standard (DES) Key or an Advanced Encryption Standard (AES) Key
$9.6
IETF RFC 6212
Published Date: 04/01/2011
Authentication-Results Registration for Vouch by Reference Results
$9.3
IETF RFC 5882
Published Date: 06/01/2010
Generic Application of Bidirectional Forwarding Detection (BFD)
$10.5

Best-Selling Products