Paul Hoffman writes: > Greetings again. The "Clone IKE SA" proposal tries to optimize IKE > SA setup in cases where VPN gateways have multiple interfaces and > want to establish different SAs on the different interfaces without > having to repeat the IKE authentication. Instead, they could clone a > single IKE SA multiple times, and then move it to different > interfaces using MOBIKE. > > If you agree with the need to standardize this usage, and believe > that draft-mglt-ipsecme-clone-ike-sa is likely to be a good starting > place for that standardization, and are willing to review and > contribute text to the document if it is adopted by the WG, please > say so on the list.
I support adopting this document for WG draft, or just go forward as individual submission. I have already reviewed this draft, and I think it is mostly ready already, so we could even start WG or IETF last call almost immediately. -- [email protected] _______________________________________________ IPsec mailing list [email protected] https://www.ietf.org/mailman/listinfo/ipsec
