MOBIKE
E522216
MOBIKE is an extension to the IKEv2 protocol that enables seamless mobility and multihoming by allowing VPN connections to survive changes in a device’s IP address or network attachment point.
Statements (44)
| Predicate | Object |
|---|---|
| instanceOf |
IKEv2 extension
ⓘ
VPN mobility protocol ⓘ network protocol extension ⓘ |
| acronymFor | IKEv2 Mobility and Multihoming Protocol NERFINISHED ⓘ |
| allows |
changing outer IP address of IKEv2/IPsec tunnels
ⓘ
switching between Wi-Fi and cellular networks ⓘ switching between multiple network interfaces ⓘ |
| appliesTo |
mobile enterprise VPN clients
ⓘ
multihomed VPN gateways ⓘ road-warrior VPN scenarios ⓘ |
| category | Internet standard ⓘ |
| compatibleWith | NAT traversal for IPsec ⓘ |
| definedIn | IPsec working group documents ⓘ |
| designedFor | IKEv2-based VPNs ⓘ |
| enables |
VPN connection continuity across IP address changes
ⓘ
VPN connection continuity across network attachment point changes ⓘ multihoming for IKEv2 VPNs ⓘ seamless mobility for IKEv2 VPNs ⓘ |
| focusesOn | IPv4 and IPv6 address changes ⓘ |
| fullName | IKEv2 Mobility and Multihoming Protocol NERFINISHED ⓘ |
| goal |
avoid re-establishing VPN tunnels when IP changes
ⓘ
improve user experience for mobile VPN users ⓘ support multihomed hosts ⓘ |
| maintains | IPsec Security Associations across address changes ⓘ |
| negotiatedDuring | IKEv2 SA setup ⓘ |
| operatesAt | control plane of IPsec/IKEv2 ⓘ |
| preserves | inner IP addressing and session state ⓘ |
| primaryBenefit |
improved reliability of VPN sessions on mobile networks
ⓘ
reduced VPN reconnection overhead ⓘ |
| publishedBy |
Internet Engineering Task Force
ⓘ
surface form:
IETF
|
| relatedTo |
IKEv2
NERFINISHED
ⓘ
IPsec NERFINISHED ⓘ VPN mobility ⓘ multihoming ⓘ |
| requires | support from both IKEv2 peers ⓘ |
| securityProperty | does not weaken IKEv2/IPsec cryptographic protections by design ⓘ |
| standardizedIn | RFC 4555 NERFINISHED ⓘ |
| status | Proposed Standard (per RFC 4555 at publication) ⓘ |
| supports |
mobile devices changing networks
ⓘ
roaming between different access networks ⓘ |
| updatesProtocol | IKEv2 NERFINISHED ⓘ |
| uses |
IKEv2 signaling to update peer addresses
ⓘ
NAT detection mechanisms of IKEv2 ⓘ UPDATE_SA_ADDR exchange ⓘ |
Referenced by (1)
Full triples — surface form annotated when it differs from this entity's canonical label.