Group Domain of Interpretation (GDOI) Payloads
- Created
- 2003-03-28
- Last Updated
- 2026-07-06
- Note
-
In all cases, new assigned numbers and values must be added due to a
Standards Action as defined in [RFC 2434].
- Available Formats
-

XML

HTML

TXT
Registries Included Below
GDOI ID Payload Type Values
- Registration Procedure(s)
-
Standards Action
- Reference
- [RFC 3547]
- Note
-
When an ISAKMP identification payload is used with GDOI, the assigned
values for the Identification Type field are interpreted according to
this registry.
The GDOI ID Payload Type is an 8-bit value that is used as a
discriminator for interpretation of the variable-length Identification
Payload. The following table describes ID Payload Types.
- Available Formats
-

CSV
SA KEK Payload Values
SA KEK Payload Values - POP Algorithm
- Registration Procedure(s)
-
Standards Action
- Reference
- [RFC 3547][RFC 6407]
- Note
-
The POP algorithm is a 16-bit value that is used to describe the
encryption algorithm of the POP payload.
- Available Formats
-

CSV
SA KEK Payload Values - KEK Attributes
- Registration Procedure(s)
-
Standards Action
- Reference
- [RFC 3547][RFC 6407]
- Note
-
The KEK Attribute consists of a 16-bit type and its associated value.
KEK attributes are used to pass policy from a GCKS to a group member.
- Available Formats
-

CSV
SA KEK Payload Values - KEK_MANAGEMENT_ALGORITHM
- Registration Procedure(s)
-
Standards Action
- Reference
- [RFC 3547][RFC 6407]
- Available Formats
-

CSV
| Value |
KEK Management Type |
Reference |
| 0 |
Reserved |
[RFC 3547] |
| 1 |
LKH |
[RFC 3547] |
| 2-127 |
Unassigned |
|
| 128-255 |
Private Use |
[RFC 3547] |
| 256-65535 |
Unassigned |
|
SA KEK Payload Values - KEK_ALGORITHM
- Registration Procedure(s)
-
Standards Action
- Reference
- [RFC 3547][RFC 6407]
- Available Formats
-

CSV
SA KEK Payload Values - KEK_KEY_LENGTH
- Registration Procedure(s)
-
Standards Action
- Reference
- [RFC 3547]
- Note
-
The KEK_KEY_LENGTH class specifies the KEK Algorithm key
length (in bits).
| Value |
Type |
Reference |
| No registrations at this time. |
SA KEK Payload Values - KEK_KEY_LIFETIME
- Registration Procedure(s)
-
Standards Action
- Reference
- [RFC 3547]
| Value |
Type |
Reference |
| No registrations at this time. |
SA KEK Payload Values - SIG_HASH_ALGORITHM
- Registration Procedure(s)
-
Standards Action
- Reference
- [RFC 3547][RFC 6407]
- Available Formats
-

CSV
SA KEK Payload Values - SIG_ALGORITHM
- Registration Procedure(s)
-
Standards Action
- Reference
- [RFC 3547][RFC 6407]
- Available Formats
-

CSV
SA KEK Payload Values - SIG_KEY_LENGTH
- Registration Procedure(s)
-
Standards Action
- Reference
- [RFC 3547]
- Note
-
The SIG_KEY_LENGTH class specifies the length of the SIG payload key.
| Value |
Type |
Reference |
| No registrations at this time. |
SA KEK Payload Values - KE_OAKLEY_GROUP
- Registration Procedure(s)
-
Standards Action
- Reference
- [RFC 3547]
| Value |
Type |
Reference |
| No registrations at this time. |
SA KEK Payload Values - KEK_ACK_REQUESTED
- Registration Procedure(s)
-
Specification Required
- Expert(s)
-
Brian Weis
- Reference
- [RFC 8263]
- Available Formats
-

CSV
| Value |
Type |
Reference |
| 0 |
Reserved |
[RFC 8263] |
| 1 |
REKEY_ACK_KEK_SHA256 |
[RFC 8263] |
| 2 |
REKEY_ACK_LKH_SHA256 |
[RFC 8263] |
| 3 |
REKEY_ACK_KEK_SHA512 |
[RFC 8263] |
| 4 |
REKEY_ACK_LKH_SHA512 |
[RFC 8263] |
| 5-128 |
Unassigned |
|
| 129-255 |
Private Use |
|
SA TEK Payload Values
SA TEK Payload Values - Protocol-ID
- Registration Procedure(s)
-
Standards Action
- Reference
- [RFC 3547]
- Note
-
The SA_TEK protocol-ID is an 8-bit value that is used to describe the
type of TEK is included in the SA_TEK payload. The following table
defines values for the Security Protocol
- Available Formats
-

CSV
Key Download Type Values
- Registration Procedure(s)
-
Standards Action
- Reference
- [RFC 3547]
- Note
-
The Key Download Type is an 8-bit value that is used as a discriminator
for interpretation of the variable-length Key Packet.
- Available Formats
-

CSV
TEK Download Type
- Registration Procedure(s)
-
Standards Action
- Reference
- [RFC 3547][RFC 6407]
- Available Formats
-

CSV
| Value |
TEK Class |
Type |
Reference |
| 0 |
RESERVED |
|
[RFC 3547] |
| 1 |
TEK_ALGORITHM_KEY |
V |
[RFC 3547] |
| 2 |
TEK_INTEGRITY_KEY |
V |
[RFC 3547] |
| 3 |
TEK_SOURCE_AUTH_KEY |
V |
[RFC 3547] |
| 4-127 |
Unassigned |
|
|
| 128-255 |
Private Use |
|
[RFC 6407] |
| 256-32767 |
Unassigned |
|
|
KEK Download Type
- Registration Procedure(s)
-
Standards Action
- Reference
- [RFC 3547][RFC 6407]
- Note
-
The following attributes may be present in a KEK download Type. In the
table, attributes that are defined as TV are marked as Basic (B);
attributes which are defined as TLV are marked as Variable (V).
- Available Formats
-

CSV
| Value |
KEK Class |
Type |
Reference |
| 0 |
RESERVED |
|
[RFC 3547] |
| 1 |
KEK_ALGORITHM_KEY |
V |
[RFC 3547] |
| 2 |
SIG_ALGORITHM_KEY |
V |
[RFC 3547] |
| 3-127 |
Unassigned |
|
|
| 128-255 |
Private Use |
|
[RFC 6407] |
| 256-32767 |
Unassigned |
|
|
LKH Download Type
- Registration Procedure(s)
-
Standards Action
- Reference
- [RFC 3547]
- Available Formats
-

CSV
| Value |
KEK Class |
Type |
Reference |
| 0 |
Reserved |
|
[RFC 3547] |
| 1 |
LKH_DOWNLOAD_ARRAY |
V |
[RFC 3547] |
| 2 |
LKH_UPDATE_ARRAY |
V |
[RFC 3547] |
| 3 |
SIG_ALGORITHM_KEY |
V |
[RFC 3547] |
| 4-127 |
Unassigned |
|
|
| 128-255 |
Private Use |
|
[RFC 3547] |
| 256-32767 |
Unassigned |
|
|
SID Download Type
- Registration Procedure(s)
-
Standards Action
- Reference
- [RFC 6407]
- Available Formats
-

CSV
| Value |
SID Class |
Type |
Reference |
| 0 |
RESERVED |
|
[RFC 6407] |
| 1 |
NUMBER_OF_SID_BITS |
B |
[RFC 6407] |
| 2 |
SID_VALUE |
V |
[RFC 6407] |
| 3-128 |
Unassigned |
|
|
| 129-255 |
Private Use |
|
[RFC 6407] |
| 256-32767 |
Unassigned |
|
|
GAP Payload Policy Attributes
- Registration Procedure(s)
-
Standards Action
- Reference
- [RFC 6407]
- Available Formats
-

CSV
| Value |
Attribute Type |
Type |
Reference |
| 0 |
RESERVED |
|
[RFC 6407] |
| 1 |
ACTIVATION_TIME_DELAY |
B |
[RFC 6407] |
| 2 |
DEACTIVATION_TIME_DELAY |
B |
[RFC 6407] |
| 3 |
SENDER_ID_REQUEST |
B |
[RFC 6407] |
| 4-127 |
Unassigned |
|
|
| 128-255 |
Private Use |
|
[RFC 6407] |
| 256-32767 |
Unassigned |
|
|
IEC 62351-9 Authentication Values
- Registration Procedure(s)
-
Expert Review
- Expert(s)
-
Brian Weis, Tero Kivinen
- Reference
- [RFC 8052]
- Available Formats
-

CSV
IEC 62351-9 Confidentiality Values
- Registration Procedure(s)
-
Expert Review
- Expert(s)
-
Brian Weis, Tero Kivinen
- Reference
- [RFC 8052]
- Available Formats
-

CSV
GDOI SA TEK Attributes
- Registration Procedure(s)
-
Expert Review
- Expert(s)
-
Brian Weis, Tero Kivinen
- Reference
- [RFC 8052]
- Available Formats
-

CSV
| Value |
Attribute |
Type |
Reference |
| 0 |
Reserved |
|
[RFC 8052] |
| 1 |
SA_ATD |
V |
[RFC 8052] |
| 2 |
SA_KDA |
B |
[RFC 8052] |
| 3-28671 |
Unassigned |
|
|
| 28672-32767 |
Reserved for Private Use |
|
[RFC 8052] |
ID Types
- Registration Procedure(s)
-
Expert Review
- Expert(s)
-
Brian Weis, Tero Kivinen
- Reference
- [RFC 8052]
- Available Formats
-

CSV
GDOI DOI Exchange Types
- Registration Procedure(s)
-
Specification Required
- Expert(s)
-
Brian Weis
- Reference
- [RFC 8263]
- Available Formats
-

CSV
| Value |
Phase |
Reference |
| GROUPKEY-PULL |
32 |
[RFC 6407] |
| GROUPKEY-PUSH |
33 |
[RFC 6407] |
| Known Unregistered Use |
34 |
|
| GROUPKEY-PUSH-ACK |
35 |
[RFC 8263] |
| Unassigned |
36-239 |
|
Contact Information