Cite this RFC:TXT | XML | BibTeX
DOI: https://doi.org/10.17487/RFC7427
Discuss this RFC: Send questions or comments to the mailing listipsec@ietf.org
Other actions:View Errata | Submit Errata | Find IPR Disclosures from the IETF | View History of RFC 7427
The Internet Key Exchange Version 2 (IKEv2) protocol has limitedsupport for the Elliptic Curve Digital Signature Algorithm (ECDSA).The current version only includes support for three Elliptic Curvegroups, and there is a fixed hash algorithm tied to each group. Thisdocument generalizes IKEv2 signature support to allow any signaturemethod supported by PKIX and also adds signature hash algorithmnegotiation. This is a generic mechanism and is not limited toECDSA; it can also be used with other signature algorithms.
For the definition ofStatus,seeRFC 2026.
For the definition ofStream, seeRFC 8729.