mip4-5----Page:3
1  2  3  4  5  6  7  8  9  10  11  12  13 

Design team conclusions and rationale
Decided to document base approach
Favor solution with minimal changes to standards
Optimizations considered (but postponed)
We need an internal home agent
The MN needs to be able to move inside
But overhead of always tunnelling to the DMZ was considered to be too high
We need an external mobility agent
IPsec does not have standardized mobility (SA endpoint update), and we want ”seamless” mobility even when outside
We need to support FAs in the external networks => the lowest layer must speak MIP
Some problems left out of scope for now
E.g. networks with only HTTP access
PPT Version