IPsec Relevant Standards

  • RFC 2407 - The Internet IP Security Domain of Interpretation for ISAKMP, November 1998 (Standards Track, Obsoleted by RFC 4306)
  • RFC 2408 - Internet Security Association and Key Management Protocol (ISAKMP), November 1998 (Standards Track, Obsoleted by RFC 4306)
  • RFC 2409 - The Internet Key Exchange (IKE), November 1998 (Standards Track, Obsoleted by RFC 4306)
  • RFC 2410 - The NULL Encryption Algorithm and Its Use With IPsec, November 1998 (Standards Track)
  • RFC 2411 - IP Security Document Roadmap, November 1998 (Informational)
  • RFC 2412 - The Oakley Key Determination Protocol, November 1998 (Informational)
  • RFC 2709 - Security Model with Tunnel-mode IPsec for NAT Domains, October 1999 (Informational)
  • RFC 3193 - Securing L2TP using IPsec, November 2001 (Standards Track)
  • RFC 3554 - On the Use of Stream Control Transmission Protocol (SCTP) with IPsec, July 2003 (Standards Track)
  • RFC 3456 - Dynamic Host Configuration Protocol (DHCPv4) Configuration of IPsec Tunnel Mode, January 2003 (Standards Track)
  • RFC 3457 - Requirements for IPsec Remote Access Scenarios, January 2003 (Informational)
  • RFC 3554 - On the Use of Stream Control Transmission Protocol (SCTP) with IPsec, July 2003 (Standards Track)
  • RFC 3566 - The AES-XCBC-MAC-96 Algorithm and Its Use with IPsec, September 2003 (Standards Track)
  • RFC 3585 - IPsec Configuration Policy Information Model, August 2003 (Standards Track)
  • RFC 3602 - The AES-CBC Cipher Algorithm and Its Use with IPsec, September 2003 (Standards Track)
  • RFC 3715 - IPsec-Network Address Translation (NAT) Compatibility Requirements, March 2004 (Informational)
  • RFC 3776 - Using IPsec to Protect IPv6 Signaling Between Mobile Nodes and Home Agents, June 2004 (Standards Track)
  • RFC 3884 - Use of IPsec Transport Mode for Dynamic Routing”, September 2004 (Informational)
  • RFC 3947 - Negotiation of NAT-Traversal in the IKE, January 2005 (Standards Track)
  • RFC 3948 - UDP Encapsulation of IPsec ESP Packets, January 2005 (Standards Track)
  • RFC 4025 - A Method for Storing IPsec Keying Material in DNS, March 2005 (Standards Track)
  • RFC 4106 - The Use of Galois/Counter Mode (GCM) in IPsec Encapsulating Security Payload (ESP), June 2005 (Standards Track)
  • RFC 4109 - Algorithms for Internet Key Exchange version 1 (IKEv1), May 2005 (Standards Track)
  • RFC 4196 The SEED Cipher Algorithm and Its use with IPsec, January 2006 (Standards Track)
  • RFC 4301 - Security Architecture for the Internet Protocol, December 2005 (Standards Track)
  • RFC 4302 - IP Authentication Header”, December 2005 (Standards Track)
  • RFC 4303 - IP Encapsulating Security Payload (ESP), December 2005 (Standards Track)
  • RFC 4304 - Extended Sequence Number (ESN) Addendum to IPsec Domain of Interpretation (DOI) for Internet Security Association and Key Management Protocol (ISAKMP), December 2005 (Standards Track)
  • RFC 4306 - Internet Key Exchange (IKEv2) Protocol, December 2005 (Standards Track)
  • RFC 4307 - Cryptographic Algorithms for Use in the Internet Key Exchange Version 2 (IKEv2), December 2005 (Standards Track)
  • RFC 4308 - Cryptographic Suites for IPsec, December 2005 (Standards Track)
  • RFC 4309 - Using Advanced Encryption Standard (AES) CCM Mode with IPsec Encapsulating Security Payload (ESP), December 2005 (Standards Track)
  • RFC 4312 - The Camellia Cipher Algorithm and Its Use With IPsec”, December 2005 (Standards Track)
  • RFC 4430 - Kerberized Internet Negotiation of Keys (KINK)”, March 2006 (Standards Track)
  • RFC 4322 - Opportunistic Encryption using the Internet Key Exchange (IKE), December 2005 (Informational)
  • RFC 4434 - The AES-XCBC-PRF-128 Algorithm for the Internet Exchange Protocol (IKE), February 2006 (Standards Track)
  • RFC 4494 - The AES-CMAC-96 Algorithm and Its Use with IPsec, June 2006 (Standards Track)
  • RFC 4543 - The Use of Galois Message Authentication Code (GMAC) in IPsec ERP and AH, May 2006 (Standards Track)
  • RFC 4555 - IKEv2 Mobility and Multihoming Protocol (MOBIKE), June 2006 (Standards Track)
  • RFC 4615 - The Advanced Encryption Standard-Cipher-based Message Authentication Code-Pseudo-Random Function-128 (AES-CMAC-PRF-128) Algorithm for the Internet Key Exchange Protocol (IKE), August 2006 (Standards Track)
  • RFC 4718 - IKEv2 Clarifications and Implementations Guidelines, October 2006 (Informational)
  • RFC 4807 - IPsec Security Policy Database Configuration MIB, March 2007 (Standards Track)
  • RFC 4809 - Requirements for an IPsec Certificate Management Profile, February 2007 (Informational)
  • RFC 4835 - Cryptographic Algorithm Implementation Requirements for Encapsulating Security Payload (ESP) and Authentication Header (AH), April 2007 (Standards Track)
  • RFC 4868 - Using HMAC-SHA-256, HMAC-SHA-384, and HMAC-SHA-512 with IPsec, May 2007 (Standards Track)
  • RFC 4869 - Suite B Cryptographic Suites for IPsec, May 2007 (Informational)
  • RFC 4877 - Mobile IPv6 Operation with IKEv2 and the Revised IPsec Architecture, April 2007 (Standards Track)
  • RFC 4891 - Using IPsec to Secure IPv6-in-IPv4 Tunnels, May 2007 (Informational)
  • RFC 4894 - Use of Hash Algorithms in Internet Key Exchange (IKE) and IPsec, May 2007 (Informational)
  • RFC 4945 - The Internet IP Security PKI Profile of IKEv1/ISAKMP, IKEv2, and PKIX, August 2007 (Standards track)
  • RFC 5265 - Mobile IPv4 Traversal across IPsec-Based VPN Gateways, June 2008 (Standards Track)
  • RFC 5374 - Multicast Extensions to the Security Architecture for the Internet Protocol, November 2008 (Standards Track)
  • RFC 5386 - Better-Than-Nothing Security: An Unauthenticated Mode of IPsec, November 2008 (Standards Track)
  • RFC 5406 - Guidelines for Specifying the Use of IPsec Version 2, February 2009 (Best Current Practice)
  • RFC 5529 - Modes of Operation for Camellia for Use with IPsec, April 2009 (Standards Track)
  • RFC 5566 - BGP IPsec Tunnel Encapsulation Attribute, June 2009 (Standards Track)
  • RFC 5660 - IPsec Channels: Connection Latching, October 2009 (Standards Track)
  • RFC 5755 - An Internet Attribute Certificate Profile for Authorization, January 2010 (Standards Track)

SOURCE: The Second Internet, book authored by InfoWeapons Chairman and CTO Lawrence E. Hughes.


    


Recent News/ Updates

Contact Us

Chat with us

Telephone:

+1 (212) 655-9509

+1 (877) 480-1634 U.S. Toll Free

Sales Form    Support Form

Hardware Solutions

IPv6 Quickstart Kit

IPv6 Testing Services

IPv6 Forum Education Certification Program