Ben, See inline. If you are ok with these changes, I will go ahead and submit an updated version of the draft. On Nov 25, 2012, at 5:56 PM, Mahesh Jethanandani wrote:
For point-to-point key management IKEv2 [RFC5996] provides for automated key exchange under a SA and can be used for a comprehensive Key Management Protocol (KMP) solution for routers. IKEv2 can be used for both IPsec SAs [RFC4301] and other types of SAs. For example, Fibre Channel SAs [RFC4595] are currently negotiated with IKEv2. Using IKEv2 to negotiate TCP-AO is a possible option.
Mahesh Jethanandani |