Skip to main content

Modular Key Management Protocol (MKMP)
draft-cheng-modular-ikmp-00

Document Type Expired Internet-Draft (individual)
Expired & archived
Authors Amir Herzberg , Dr. Hugo Krawczyk , Pau-Chen Cheng , Dr. Juan A. Garay
Last updated 1994-11-28
RFC stream (None)
Intended RFC status (None)
Formats
Stream Stream state (No stream defined)
Consensus boilerplate Unknown
RFC Editor Note (None)
IESG IESG state Expired
Telechat date (None)
Responsible AD (None)
Send notices to (None)

This Internet-Draft is no longer active. A copy of the expired Internet-Draft is available in these formats:

Abstract

This memo describes mechanisms and introduces a protocol for the management of cryptographic keys as required for the management of security associations in IPSP and IPv6. Our key management scheme adheres to a modular approach, namely, the scheme is separated into two modules: An upper module in which a long-lived (``master'') key is exchanged between the communicating parties, and a lower module, in which the already shared (master) key is used for the derivation, sharing and/or refreshment of additional short-lived keys to be used for the cryptographic transformations applied to the data. In this draft, we concentrate on the management module for short-lived keys, and indicate how proposed variants of public key-based master key exchange protocols can be accommodated in the upper module.

Authors

Amir Herzberg
Dr. Hugo Krawczyk
Pau-Chen Cheng
Dr. Juan A. Garay

(Note: The e-mail addresses provided for the authors of this Internet-Draft may no longer be valid.)