Hi Zaifeng,
 
I have following questions and concerns about your proposed solution "The
FAP will then send the FAP information together with the corresponding SeGW
notarized signature to its mobile operator's core network. The core network
verifies the FAP information by validating the SeGW notarized signature
prior to the acceptance of the information".
 
Is every ip packet carries SeGW notarized signature after server sends
notarized signature to the client? if not, what's the point in returning
notarized signature to the client? I believe yes, if so, It will increase
percentage of overhead per packet and may impact quality of real time voice
and video. 
 
if every ip packet carries SeGW notarized signature, How and where this
signature carried inside ip packet? will it bring some modifications inside
IPsec packet processing? Is this processing happens outside of IPsec? is it
outside scope of this document? It would be great, if some of these aspects
are addressed in the draft.
 
Thanks,
 
Dharmanandana Reddy Pothula.
 
 

 

 

_______________________________________________
IPsec mailing list
[email protected]
https://www.ietf.org/mailman/listinfo/ipsec

Reply via email to