Alex Conta writes:
 > .  It misses the point that when ESP is in
 > > use there is no visible set of bits to base decisions on for
 > > each domain to set the DSCP. The only set of bits there is left
 > > to work with is the SPI, and the semantics of that are only
 > > known between the endpoints unless signalled via RSVP.
 > > 
 > 
 > You are pointing to tunnel mode ESP, and not transport mode ESP. 

   Wrong. Everything at L4+ is encrypted with transport
   mode ESP. The only difference between tunnel and
   transport is the visibility of the inner IP
   addresses.

                Mike
--------------------------------------------------------------------
IETF IPng Working Group Mailing List
IPng Home Page:                      http://playground.sun.com/ipng
FTP archive:                      ftp://playground.sun.com/pub/ipng
Direct all administrative requests to [EMAIL PROTECTED]
--------------------------------------------------------------------

Reply via email to