Thanks, Bas! Most of these are easy to address, will track them here:
https://github.com/smyslov/ikev2-downgrade-prevention/issues/16

One follow up question:

ยง6 Is there any potential confusion on how to split the concatenation
> RealMessage1 | RealMessage2 | Nonce*Data | MACedIDFor*?
>

By confusion do you mean ambiguity in the specification, or are you
concerned about a signature/MAC being replayed in the wrong context?

Chris P.
_______________________________________________
IPsec mailing list -- [email protected]
To unsubscribe send an email to [email protected]

Reply via email to