|
Design team conclusions and rationale Decided to document base approach Favor solution with minimal changes to standards Optimizations considered (but postponed) We need an internal home agent The MN needs to be able to move inside But overhead of always tunnelling to the DMZ was considered to be too high We need an external mobility agent IPsec does not have standardized mobility (SA endpoint update), and we want ”seamless” mobility even when outside We need to support FAs in the external networks => the lowest layer must speak MIP Some problems left out of scope for now E.g. networks with only HTTP access |