Reference document

Org
IETF
Pubnum
RFC 7427
Date
2015-01
Version
Title
Signature Authentication in the Internet Key Exchange Version 2 (IKEv2)

Applicability

The Internet Key Exchange Version 2 (IKEv2) protocol has limited support for the Elliptic Curve Digital Signature Algorithm (ECDSA). The current version only includes support for three Elliptic Curve groups, and there is a fixed hash algorithm tied to each group. This document generalizes IKEv2 signature support to allow any signature method supported by PKIX and also adds signature hash algorithm negotiation. This is a generic mechanism and is not limited to ECDSA; it can also be used with other signature algorithms.

Responsible Party

Name
FMN CPWG

Status

URI
https://www.ietf.org/rfc/rfc7427.txt

History

Flag Date RFC Version
added 2016-04-18 8-5 9
changed 2017-01-14 9-17 10
changed 2022-12-20 14-62 15
UUID
504e0f97-7f45-4ee4-b7ba-e753b57db39d

Relationships

This standard is used by the following service profiles: