@techreport{carrel-ipsecme-controller-ike-01, number = {draft-carrel-ipsecme-controller-ike-01}, type = {Internet-Draft}, institution = {Internet Engineering Task Force}, publisher = {Internet Engineering Task Force}, note = {Work in Progress}, url = {https://datatracker.ietf.org/doc/draft-carrel-ipsecme-controller-ike/01/}, author = {David Carrel and Brian Weis}, title = {{IPsec Key Exchange using a Controller}}, pagetotal = 25, year = 2019, month = mar, day = 10, abstract = {This document presents a key exchange method allowing devices managed by a controller (e.g., an SDN management station) to create private pair-wise IPsec SAs without IKEv2 or any other direct peer-to-peer session establishment messages. The method can be used when a full mesh of IKEv2 sessions between IPsec devices is not appropriate.}, }