database logo graphic

RFC 6290

"A Quick Crash Detection Method for the Internet Key Exchange Protocol (IKE)", June 2011

Canonical URL:
http://www.rfc-editor.org/rfc/rfc6290.txt
This document is also available in this non-normative format: PDF.
Status:
PROPOSED STANDARD
Authors:
Y. Nir, Ed.
D. Wierbowski
F. Detienne
P. Sethi
Stream:
IETF
Source:
ipsecme (sec)

Cite this RFC: TXT  |  XML

Other actions: Find Errata (if any)  |  Submit Errata  |  Find IPR Disclosures from the IETF


Abstract

This document describes an extension to the Internet Key Exchange Protocol version 2 (IKEv2) that allows for faster detection of Security Association (SA) desynchronization using a saved token. When an IPsec tunnel between two IKEv2 peers is disconnected due to a restart of one peer, it can take as much as several minutes for the other peer to discover that the reboot has occurred, thus delaying recovery. In this text, we propose an extension to the protocol that allows for recovery immediately following the restart. [STANDARDS-TRACK]


For the definition of Status, see RFC 2026.

For the definition of Stream, see RFC 4844.


Go to the RFC Editor Homepage.