CLARIFICATION IN IKEV2 AUTHENTCATION PAHSE 2

CLARIFICATION IN IKEV2 AUTHENTCATION PAHSE 2

Secure Home | Search | About
 General Computer Security    Post an article   get this group's latest topics as an RSS feed add this group's latest topics to your My MSN content add this group's latest topics to your My Yahoo content add this group's latest topics to your Google content
Subject Author Date
CLARIFICATION IN IKEV2 AUTHENTCATION PAHSE 2 ramuges 03-28-2006
Posted by ramuges on March 28, 2006, 10:13 am
If you were  Registered and logged in, you could reply and use other advanced thread options
hi,
iam implementing ikev2, now ii have completed the phase 1 of the ikev2
, and now iam about to startthe authentication phase, in
authintication phase ,iam having one doubt .
section 2.15 (rfc 4306) authenticatin of IKE_SA ,
here he has mentioned that AUTH = prf(prf(shared secret ,"KEY pad for
IKEV2"),<msg octets>)
here what is that shared secret ,whether the shared secret generated
from phase 1 or any other
2: and whether the text pad is fixed or any thing we have to take.
if we take shared secret of phase 1 , i am having one doubt i.e how to
identify other user is valid
means any intruder who can actively paricipate in pahse 1 and get
authenticated , because we are not communicated with ip number (and
when NAT is there all will communiate with same ip).
so please some body clarify my doubt.
is there any other shared secret key is there, and here he mentioned
about digital signature ,
what are the rules to do that

Thanks & regards
RAMASWAMY BM
GlobalEdgesoftware Ltd
BANGALORE


Similar ThreadsPosted
Question about IKEv2 authentication May 3, 2006, 4:46 pm

The site map in XML format XML site map

Contact Us | Privacy Policy