Movatterモバイル変換


[0]ホーム

URL:


Search RFCs

Advanced Search

RFC Editor

RFC 7427

Signature Authentication in the Internet Key Exchange Version 2 (IKEv2),January 2015

File formats:
icon for text fileicon for PDFicon for HTML
Status:
PROPOSED STANDARD
Updates:
RFC 7296
Authors:
T. Kivinen
J. Snyder
Stream:
IETF
Source:
ipsecme (sec)

Cite this RFC:TXT  | XML  |  BibTeX

DOI:  https://doi.org/10.17487/RFC7427

Discuss this RFC: Send questions or comments to the mailing listipsec@ietf.org

Other actions:View Errata  | Submit Errata  | Find IPR Disclosures from the IETF  | View History of RFC 7427


Abstract

The Internet Key Exchange Version 2 (IKEv2) protocol has limitedsupport for the Elliptic Curve Digital Signature Algorithm (ECDSA).The current version only includes support for three Elliptic Curvegroups, and there is a fixed hash algorithm tied to each group. Thisdocument generalizes IKEv2 signature support to allow any signaturemethod supported by PKIX and also adds signature hash algorithmnegotiation. This is a generic mechanism and is not limited toECDSA; it can also be used with other signature algorithms.


For the definition ofStatus,seeRFC 2026.

For the definition ofStream, seeRFC 8729.




IABIANAIETFIRTFISEISOCIETF Trust
ReportsPrivacy StatementSite MapContact Us

Advanced Search

[8]ページ先頭

©2009-2025 Movatter.jp