|
Issues to Explore in Architecture Characteristics of intermediary-based transport services Their need for packet processing and signaling Support for multiple intermediaries in an end-to-end path? One-to-one vs one-to-many security relationship Association of intermediary with “access” links How to minimize the impact on end-to-end security? Protocol Functions How to reliably and securely configure, invoke and revoke intermediary-based transport services from the end systems? How does the intermediary obtain the information needed to offer services? Applicability of existing mechanisms, e.g., IKE for key exchange? |