@techreport{martius-ipsec-mike-00, number = {draft-martius-ipsec-mike-00}, type = {Internet-Draft}, institution = {Internet Engineering Task Force}, publisher = {Internet Engineering Task Force}, note = {Work in Progress}, url = {https://datatracker.ietf.org/doc/draft-martius-ipsec-mike/00/}, author = {Kai Martius}, title = {{Multi-Domain Authentication and Key Exchange Protocol }}, pagetotal = 38, year = 1999, month = jul, day = 21, abstract = {This document describes a protocol which allows to authenticate systems and establish Security Associations in networks with different domains of security. The protocol is not only end-to-end, but it involves all participating systems in a single exchange. Further it allows security gateways to derive sub-policies for crossing (encrypted) IPSec-traffic from 'conventional' packet filtering rules in a trusted manner.}, }