Subject: Re: AES ciphers for IPsec/IKE
To: Jun-ichiro itojun Hagino <itojun@iijlab.net>
From: Steven M. Bellovin <smb@research.att.com>
List: tech-security
Date: 08/03/2000 13:05:12
  by mail.netbsd.org with SMTP; 3 Aug 2000 17:05:22 -0000
	by mail-blue.research.att.com (Postfix) with ESMTP
	id A667A4CE22; Thu,  3 Aug 2000 13:05:21 -0400 (EDT)
	by postal.research.att.com (8.8.7/8.8.7) with ESMTP id NAA23763;
	Thu, 3 Aug 2000 13:05:20 -0400 (EDT)
	by smb.research.att.com (Postfix) with ESMTP
	id DE70D35DC2; Thu,  3 Aug 2000 13:05:12 -0400 (EDT)
From: "Steven M. Bellovin" <smb@research.att.com>
To: Jun-ichiro itojun Hagino <itojun@iijlab.net>
Cc: tech-security@netbsd.org
Subject: Re: AES ciphers for IPsec/IKE 
Mime-Version: 1.0
Content-Type: text/plain; charset=us-ascii
Date: Thu, 03 Aug 2000 13:05:12 -0400
Message-Id: <20000803170512.DE70D35DC2@smb.research.att.com>

In message <200008031418.e73EICM07019@ starfruit.itojun.org>, Jun-ichiro itojun
 Hagino writes:
>	are there any estimated date for final AES cipher announcement?
>	I'm asking because, if it is announced before 1.5 release, i thought
>	we'd better support it in 1.5.

The latest word I've heard is mid-to-late September.  Some folks have 
suggested that it be announced at the RSA patent expiration party.
>
>	to do this, we need protocol/API numbers for new ciphers,
>	but they are not assigned yet.
>	draft-ietf-ipsec-ciph-aes-cbc-00 has experimental numbers, however,
>	i don't think those numbers will be used widely (those experimental
>	numbers should vanish in very near future).



		--Steve Bellovin