Re: Last Call: Security Architecture for the Internet Protocol to Proposed Standard
[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: Last Call: Security Architecture for the Internet Protocol to Proposed Standard



Howard,

IPsec provides for host-to-host, host-to-gateway, and gateway-to-gateway
modes of use.  In the host-to-host case, the granularity of an SA can be as
fine as a port pair, or as coarse as an IP address pair.  So, many of the
issues you raised are already addressed by the specs.

Steve




Note Well: Messages sent to this mailing list are the opinions of the senders and do not imply endorsement by the IETF.

Note: Messages sent to this list are the opinions of the senders and do not imply endorsement by the IETF.