rfc9867v2.txt   rfc9867.txt 
skipping to change at line 261 skipping to change at line 261
Initiator Responder Initiator Responder
------------------------------------------------------------------ ------------------------------------------------------------------
HDR, SK { ... N(PPK_IDENTITY_KEY, PPK_ID_1) HDR, SK { ... N(PPK_IDENTITY_KEY, PPK_ID_1)
[, N(PPK_IDENTITY_KEY, PPK_ID_2)] ... [, N(PPK_IDENTITY_KEY, PPK_ID_2)] ...
[, N(PPK_IDENTITY_KEY, PPK_ID_n)]} ---> [, N(PPK_IDENTITY_KEY, PPK_ID_n)]} --->
Depending on the responder's capabilities and policy, the following Depending on the responder's capabilities and policy, the following
situations are possible: situations are possible:
1. If the responder is configured with a PPK having ID that is among 1. If the responder is configured with a PPK with an ID that is
the IDs sent by the initiator, and if this PPK matches the among the IDs sent by the initiator, and if this PPK matches the
initiator's PPK (based on the information from the PPK initiator's PPK (based on the information from the PPK
Confirmation field), then the responder selects this PPK and Confirmation field), then the responder selects this PPK and
returns its identity in the PPK_IDENTITY notification. The returns its identity in the PPK_IDENTITY notification. The
PPK_IDENTITY notification is defined in [RFC8784]. PPK_IDENTITY notification is defined in [RFC8784].
Initiator Responder Initiator Responder
--------------------------------------------------------------- ---------------------------------------------------------------
<--- HDR, SK { ... N(PPK_IDENTITY, PPK_ID_i)} <--- HDR, SK { ... N(PPK_IDENTITY, PPK_ID_i)}
In this case, the IKE_AUTH exchange is performed as defined in In this case, the IKE_AUTH exchange is performed as defined in
 End of changes. 1 change blocks. 
2 lines changed or deleted 2 lines changed or added

This html diff was produced by rfcdiff 1.48.