IETF RFC 5903 PDF

IETF RFC 5903 PDF

Name:
IETF RFC 5903 PDF

Published Date:
06/01/2010

Status:
[ Active ]

Description:

Elliptic Curve Groups modulo a Prime (ECP Groups) for IKE and IKEv2

Publisher:
Internet Engineering Task Force

Document status:
Active

Format:
Electronic (PDF)

Delivery time:
10 minutes

Delivery time (for Russian version):
200 business days

SKU:

Choose Document Language:
$10.5
Need Help?

Introduction

This document describes default Diffie-Hellman groups for use in IKE and IKEv2 in addition to the Oakley Groups included in [IKE] and the additional groups defined since [IANA-IKE].

This document assumes that the reader is familiar with the IKE protocol and the concept of Oakley Groups, as defined in RFC 2409 [IKE]. RFC 2409 [IKE] defines five standard Oakley Groups: three modular exponentiation groups and two elliptic curve groups over GF[2^N]. One modular exponentiation group (768 bits - Oakley Group 1) is mandatory for all implementations to support, while the other four are optional. Nineteen additional groups subsequently have been defined and assigned values by IANA. All of these additional groups are optional.

The purpose of this document is to expand the options available to implementers of elliptic curve groups by adding three ECP groups (elliptic curve groups modulo a prime). The reasons for adding such groups include the following.

- The groups proposed afford efficiency advantages in software applications since the underlying arithmetic is integer arithmetic modulo a prime rather than binary field arithmetic. (Additional computational advantages for these groups are presented in [GMN].)

- The groups proposed encourage alignment with other elliptic curve standards. The proposed groups are among those standardized by NIST, the Standards for Efficient Cryptography Group (SECG), ISO, and ANSI. (See Section 5 for details.)

- The groups proposed are capable of providing security consistent with the Advanced Encryption Standard [AES].

In summary, due to the performance advantages of elliptic curve groups in IKE implementations and the need for further alignment with other standards, this document defines three elliptic curve groups based on modular arithmetic.

These groups were originally proposed in [RFC4753]. This document changes the format of the shared key produced by a Diffie-Hellman exchange using these groups. The shared key format used in this specification appeared earlier as an erratum to RFC 4753 [Err9], but some implementors of RFC 4753 were unaware of the erratum and did not implement the correction. Implementations of RFC 4753 that incorporate the correction are interoperable with implementations of this specification. However, there is a potential for interoperability problems between implementations of this specification and implementations of RFC 4753 that did not implement the correction from the erratum. These problems could be difficult to detect and analyze since both use the same code point but the secret value (which is probably not available to the trouble desk) is computed differently. Where peers are not interoperable, the initiator will never receive a response and eventually times out.

Section 9 provides more details of the changes from [RFC4753]. This document obsoletes RFC 4753 and addresses the erratum.


Edition : 10
File Size : 1 file , 24 KB
Number of Pages : 16
Published : 06/01/2010

History


Related products

IETF RFC 8302
Published Date: 01/01/2018
Transparent Interconnection of Lots of Links (TRILL): ARP and Neighbor Discovery (ND) Optimization
$10.8

Best-Selling Products

SN-ISO/IEC TS 17021-11:2018
Published Date: 02/01/2019
Conformity assessment - Requirements for bodies providing audit and certification of management systems - Part 11: Competence requirements for auditing and certification of facility management (FM) management systems
SN-ISO/IEC TS 20000-5:2022
Published Date: 01/18/2022
Information technology - Service management - Part 5: Implementation guidance for ISO/IEC 20000-1
SN-ISO/IEC TS 22924:2021
Published Date: 06/22/2021
Identification cards - Transport layer topologies - Configuration for HCI/HCP interchange
SN-ISO/IEC TS 23078-3:2021
Published Date: 04/26/2021
Information technology - Specification of DRM technology for digital publications - Part 3: Device key-based protection
SN-ISO/IEC TS 27008:2019
Published Date: 02/01/2019
Information technology - Security techniques - Guidelines for the assessment of information security controls
SN-ISO/IEC TS 27100:2020
Published Date: 01/29/2021
Information technology — Cybersecurity — Overview and concepts