Additional Diffie-Hellman Tests for IKEv2

Document Type Replaced Internet-Draft (individual)
Last updated 2013-01-31 (latest revision 2012-12-10)
Replaced by RFC 6989
Stream IETF
Intended RFC status (None)
Expired & archived
pdf htmlized (tools) htmlized bibtex
Stream WG state (None)
Document shepherd No shepherd assigned
IESG IESG state Replaced by draft-ietf-ipsecme-dh-checks
Consensus Boilerplate Unknown
Telechat date
Responsible AD (None)
Send notices to (None)

This Internet-Draft is no longer active. A copy of the expired Internet-Draft can be found at


This document adds a small number of mandatory tests required for the secure operation of IKEv2 with elliptic curve groups. No change is required to IKE implementations that use modular exponential groups, other than a few rarely used so-called DSA groups. This document updates the IKEv2 protocol, RFC 5996.


Yaron Sheffer (
Scott Fluhrer (

(Note: The e-mail addresses provided for the authors of this Internet-Draft may no longer be valid.)