Additional Diffie-Hellman Tests for IKEv2

The information below is for an old version of the document
Document Type None Internet-Draft (ipsecme WG)
Last updated 2013-04-30 (latest revision 2013-04-22)
Replaces draft-sheffer-ipsecme-dh-checks
Stream IETF
Intended RFC status Proposed Standard
Expired & archived
pdf htmlized bibtex
Additional URLs
- Mailing list discussion
Stream WG state (None)
Document shepherd Paul Hoffman
Shepherd write-up Show (last changed 2013-04-24)
IESG IESG state Unknown state
Consensus Boilerplate Unknown
Telechat date
Responsible AD Sean Turner
IESG note Paul Hoffman ( is the document shepherd.
Send notices to,

This Internet-Draft is no longer active. A copy of the expired Internet-Draft can be found at


This document adds a small number of mandatory tests required for the secure operation of IKEv2 with elliptic curve groups. No change is required to IKE implementations that use modular exponential groups, other than a few rarely used so-called DSA groups. This document updates the IKEv2 protocol, RFC 5996.


Yaron Sheffer (
Scott Fluhrer (

(Note: The e-mail addresses provided for the authors of this Internet-Draft may no longer be valid.)