Design and Implementation of Modular Key Management Protocol and IP Secure Tunnel on AIX

Pau-Chen Cheng, Juan A. Garay, Amir Herzberg, and Hugo Krawczyk

IBM Thomas J. Watson Research Center
Yorktown Heights, NY 10598, U.S.A.



This paper presents the design principles, architecture, implementation and performance of our modular key management protocol (MKMP) and an IP secure tunnel protocol (IPST) which protects the secrecy and integrity of IP datagrams using cryptographic functions. To use the existing IP infrastructure, MKMP is built on top of UDP and the IPST protocol is built by encapsulating IP datagrams.

