Minimal Internet Key Exchange Version 2 Initiator Implementation
RFC 7815, “Minimal Internet Key Exchange Version 2 Initiator Implementation”, is an Informational document published in March 2016 by T. Kivinen. The canonical text is published by the RFC Editor.
Abstract
This document describes a minimal initiator version of the Internet Key Exchange version 2 (IKEv2) protocol for constrained nodes. IKEv2 is a component of IPsec used for performing mutual authentication and establishing and maintaining Security Associations (SAs). IKEv2 includes several optional features, which are not needed in minimal implementations. This document describes what is required from the minimal implementation and also describes various optimizations that can be done. The protocol described here is interoperable with a full IKEv2 implementation using shared secret authentication (IKEv2 does not require the use of certificate authentication). This minimal initiator implementation can only talk to a full IKEv2 implementation acting as the responder; thus, two minimal initiator implementations cannot talk to each other.
This document does not update or modify RFC 7296 but provides a more compact description of the minimal version of the protocol. If this document and RFC 7296 conflict, then RFC 7296 is the authoritative description.
What “Informational” means
Published for the general information of the community. It does not define an IETF standard and carries no standards-track status.
The canonical text of RFC 7815 is hosted at rfc-editor.org. Available in TXT,HTML.
- RFC 7814 Virtual Subnet: A BGP/MPLS IP VPN-Based Subnet Extension Solution
- RFC 7816 DNS Query Name Minimisation to Improve Privacy
- RFC 7813 IS-IS Path Control and Reservation
- RFC 7817 Updated Transport Layer Security Server Identity Check Procedure for Email-Related Protocols
- RFC 7812 An Architecture for IP/LDP Fast Reroute Using Maximally Redundant Trees
- RFC 7818 URN Namespace for MEF Documents
- RFC 7811 An Algorithm for Computing IP/LDP Fast Reroute Using Maximally Redundant Trees
- RFC 7819 Privacy Considerations for DHCP