Hi Tero,
Here is proposed charter text for the "Mitigating privacy concerns" section:
IKEv2 is currently vulnerable to the two following privacy concerns:
1) It's not possible to run a server that obfuscates IKEv2/IPsec using TLS.
Today thanks to RFC 8229 it is possible to run an
Reviewer: Joel Jaeggli
Review result: Ready
I reviewed draft-ietf-ipsecme-eddsa on behalf of the opsdir during it's IETF
Last call.
This standards track draft introduces an importance change in the IKE
negotiation in that the sender can indicate that it hash algorithms which do
not require