<?xml version="1.0" encoding="UTF-8"?>
<reference anchor="I-D.ietf-ippm-ipsec" target="https://datatracker.ietf.org/doc/html/draft-ietf-ippm-ipsec-00">
   <front>
      <title>Network Performance Measurement for IPsec</title>
      <author initials="K." surname="Pentikousis" fullname="Kostas Pentikousis">
         </author>
      <author initials="Y." surname="Cui" fullname="Yang Cui">
         </author>
      <author initials="E." surname="Zhang" fullname="Emma Zhang">
         </author>
      <date month="July" day="5" year="2013" />
      <abstract>
	 <t>   IPsec is a mature technology with several interoperable
   implementations.  Indeed, the use of IPsec tunnels is increasingly
   gaining popularity in several deployment scenarios, not the least in
   what used to be solely areas of traditional telecommunication
   protocols.  Wider deployment calls for mechanisms and methods that
   enable tunnel end-users, as well as operators, to measure one-way and
   two-way network performance.  Unfortunately, however, standard IP
   performance measurement security mechanisms cannot be readily used
   with IPsec.  This document makes the case for employing IPsec to
   protect the One-way and Two-Way Active Measurement Protocols (O/
   TWAMP) and proposes a method which combines IKEv2 and O/TWAMP as
   defined in RFC 4656 and RFC 5357, respectively.  This specification
   aims, on the one hand, to ensure that O/TWAMP can be secured with the
   best mechanisms we have at our disposal today while, on the other
   hand, it facilitates the applicability of O/TWAMP to networks that
   have already deployed IPsec.

	 </t>
      </abstract>
   </front>
   <seriesInfo name="Internet-Draft" value="draft-ietf-ippm-ipsec-00" />
   
</reference>
