Re: [IPsec] Candidate charter text is now in wiki

2017-11-28 Thread David Schinazi
Hi Tero, Here is proposed charter text for the "Mitigating privacy concerns" section: IKEv2 is currently vulnerable to the two following privacy concerns: 1) It's not possible to run a server that obfuscates IKEv2/IPsec using TLS. Today thanks to RFC 8229 it is possible to run an

[IPsec] Opsdir last call review of draft-ietf-ipsecme-eddsa-04

2017-11-28 Thread Joel Jaeggli
Reviewer: Joel Jaeggli Review result: Ready I reviewed draft-ietf-ipsecme-eddsa on behalf of the opsdir during it's IETF Last call. This standards track draft introduces an importance change in the IKE negotiation in that the sender can indicate that it hash algorithms which do not require