Firewall Traversal authorization system

Document Type Expired Internet-Draft (individual)
Authors Kai Martius  , Michael Richardson 
Last updated 1997-07-10
Stream (None)
Intended RFC status (None)
Expired & archived
pdf htmlized bibtex
Stream Stream state (No stream defined)
Consensus Boilerplate Unknown
RFC Editor Note (None)
IESG IESG state Expired
Telechat date
Responsible AD (None)
Send notices to (None)

This Internet-Draft is no longer active. A copy of the expired Internet-Draft can be found at


This document describes a public key certificate mechanism to authorize traversal of multiple security gateways (firewalls). This work is independant of transport layer in concept, and could apply to IPsec, TLS, or SecSH. It is applied here to IPsec. The SPKI certificate format is used here.


Kai Martius (
Michael Richardson (

(Note: The e-mail addresses provided for the authors of this Internet-Draft may no longer be valid.)