Using IPsec to Secure IPv6-in-IPv4 Tunnels

This document gives guidance on securing manually configured IPv6-in- IPv4 tunnels using IPsec in transport mode. No additional protocol extensions are described beyond those available with the IPsec framework. This memo provides information for the Internet community.

[1]  Bernard Aboba,et al.  IPsec-Network Address Translation (NAT) Compatibility Requirements , 2004, RFC.

[2]  Charlie Kaufman,et al.  Internet Key Exchange (IKEv2) Protocol , 2005, RFC.

[3]  Erik Nordmark,et al.  Transition Mechanisms for IPv6 Hosts and Routers , 1996, RFC.

[4]  Paul E. Hoffman,et al.  IKEv2 Clarifications and Implementation Guidelines , 2006, RFC.

[5]  Glen Zorn,et al.  Securing L2TP using IPsec , 2001, RFC.

[6]  Mark Duffy,et al.  Framework for IPsec Protected Virtual Links for PPVPNs , 2002 .

[7]  Brian E. Carpenter,et al.  Connection of IPv6 Domains via IPv4 Clouds , 2001, RFC.

[8]  Erik Nordmark,et al.  Basic Transition Mechanisms for IPv6 Hosts and Routers , 2005, RFC.

[9]  Pasi Eronen,et al.  IKEv2 Mobility and Multihoming Protocol (MOBIKE) , 2006, RFC.

[10]  Ari Huttunen,et al.  UDP Encapsulation of IPsec ESP Packets , 2005, RFC.

[11]  Stephen T. Kent,et al.  IP Authentication Header , 1995, RFC.

[12]  Dan Harkins,et al.  The Internet Key Exchange (IKE) , 1998, RFC.

[13]  Hugo Krawczyk,et al.  A Security Architecture for the Internet Protocol , 1999, IBM Syst. J..

[14]  Joseph D. Touch,et al.  Use of IPsec Transport Mode for Dynamic Routing , 2004, RFC.

[15]  Yakov Rekhter,et al.  Encapsulating MPLS in IP or Generic Routing Encapsulation (GRE) , 2005, RFC.

[16]  Fred Baker,et al.  Ingress Filtering for Multihomed Networks , 2004, RFC.

[17]  Jordi Palet,et al.  Analysis of IPv6 Tunnel End-point Discovery Mechanisms , 2005 .