Skip to main content

Use of SHA-3 in the Internet Key Exchange Protocol Version 2 (IKEv2) and IPsec
draft-salter-ipsecme-sha3-01

Document Type Replaced Internet-Draft (ipsecme WG)
Expired & archived
Authors Ben S , Adam R , Jonathan C
Last updated 2025-10-24 (Latest revision 2025-07-03)
Replaced by draft-ietf-ipsecme-sha3
RFC stream Internet Engineering Task Force (IETF)
Intended RFC status (None)
Formats
Additional resources Mailing list discussion
Stream WG state Adopted by a WG
Document shepherd (None)
IESG IESG state Replaced by draft-ietf-ipsecme-sha3
Consensus boilerplate Unknown
Telechat date (None)
Responsible AD (None)
Send notices to (None)

This Internet-Draft is no longer active. A copy of the expired Internet-Draft is available in these formats:

Abstract

This document specifies the use of KMAC128 and KMAC256 within the Internet Key Exchange Version 2 (IKEv2), Encapsulating Security Payload (ESP), and Authentication Header (AH) protocols. These algorithms can be used as integrity protection algorithms for ESP, AH and IKEv2, and as Pseudo-Random Functions (PRFs) for IKEv2. Requirements for supporting signature algorithms in IKEv2 that use SHA3-256, SHA3-384, SHA3-512, SHAKE128 and SHAKE256 are also specified.

Authors

Ben S
Adam R
Jonathan C

(Note: The e-mail addresses provided for the authors of this Internet-Draft may no longer be valid.)