<?xml version="1.0" encoding="UTF-8"?>
<reference anchor="I-D.carrel-ipsecme-controller-ike" target="https://datatracker.ietf.org/doc/html/draft-carrel-ipsecme-controller-ike-01">
   <front>
      <title>IPsec Key Exchange using a Controller</title>
      <author initials="D." surname="Carrel" fullname="David Carrel">
         <organization>Cisco Systems</organization>
      </author>
      <author initials="B." surname="Weis" fullname="Brian Weis">
         <organization>Independent</organization>
      </author>
      <date month="March" day="10" year="2019" />
      <abstract>
	 <t>   This document presents a key exchange method allowing devices managed
   by a controller (e.g., an SDN management station) to create private
   pair-wise IPsec SAs without IKEv2 or any other direct peer-to-peer
   session establishment messages.  The method can be used when a full
   mesh of IKEv2 sessions between IPsec devices is not appropriate.

	 </t>
      </abstract>
   </front>
   <seriesInfo name="Internet-Draft" value="draft-carrel-ipsecme-controller-ike-01" />
   
</reference>
