Skip to main content

A GSS-API Authentication Method for IKE

Document Type Expired Internet-Draft (ipsec WG)
Expired & archived
Authors Derrell Piper , Brian Swander
Last updated 2001-07-19
RFC stream Internet Engineering Task Force (IETF)
Intended RFC status (None)
Additional resources Mailing list discussion
Stream WG state WG Document
Document shepherd (None)
IESG IESG state Expired
Consensus boilerplate Unknown
Telechat date (None)
Responsible AD (None)
Send notices to (None)

This Internet-Draft is no longer active. A copy of the expired Internet-Draft is available in these formats:


This document describes an alternate authentication method for IKE which makes use of GSS-API to authenticate the Diffie-Hellman exchange. The mechanism described here extends the authentication methods defined in RFC-2409 without introducing any modifications to the IKE key exchange protocol.


Derrell Piper
Brian Swander

(Note: The e-mail addresses provided for the authors of this Internet-Draft may no longer be valid.)