> > If by this you mean that the flow label is not covered
> > by AH
>
> nope - I mean that it is not encrypted thus it can be seen by the
> routers
>
>
Ah, I think I see what you are getting at.
The transited network can see the source/destination address,
and the flow label. Thus, if the flow label acts as a proxy
for the protocol type and port number, the transited
network can still obtain a certain amount of information
on the packet contents.
Good point.
jak
--------------------------------------------------------------------
IETF IPng Working Group Mailing List
IPng Home Page: http://playground.sun.com/ipng
FTP archive: ftp://playground.sun.com/pub/ipng
Direct all administrative requests to [EMAIL PROTECTED]
--------------------------------------------------------------------