Yoav Nir <[email protected]> wrote:
> Changes include:
> - Clarified keying material derivation for IKE
> - Calrified that IV is included in the Encrypted payload
> - Fixed the requirements for padding in the Encrypted payload so as not
to require padding bytes.
> - Added a paragraph on the (non-)secrecy of the Salt based on discussion
in the TLS mailing list
> - Fixed some errors in the examples (thanks to Steve Doyle and Martin
Willi)
> Those examples are all synthetic, generated by calling the same
> ChaCha20 / Poly1305 implementation that I made for creating the
> examples in the CFRG draft. They were not created with an IKE daemon or
> a IPsec driver, so they are prone to such errors.
I read the diffs, and find they all make sense.
_______________________________________________
IPsec mailing list
[email protected]
https://www.ietf.org/mailman/listinfo/ipsec