Subject: Re: IPSEC and user vs machine authentication
To: Michael Richardson <>
From: Steven M. Bellovin <>
List: tech-security
Date: 08/15/2005 19:25:28
In message <>, Michael Richards
on writes:
>>>>>> "Steven" == Steven M Bellovin <> writes:
>    Jason> Has that effort died?  I attended a few informal discussions
>    Jason> about this topic when it was first being discussed, but was
>    Jason> not able to stay involved and have not heard much about it
>    Jason> since, until you mentioned it now.
>    >> I'm still working on it, but I can't write a "standard" in
>    >> isolation.  I wrote code for Openswan to prototype the first part
>    >> [query] (and we even demonstrated it at a BlackHat conference).
>    >> 
>    >> I'm still interesting in continuing on this.
>    Steven> As am I.  I tried hard to get the IPsec WG interested in the
>    Steven> question, way back when, but with little success.
>  Do you perhaps have students who might want to get involved?

No, not yet.

		--Steven M. Bellovin,