>> > > Would encrypting multicast not fundamentally break the concept of multicast > itself, unless you're encrypting multicast traffic over a backbone? > No, i wasnt alluding to encrypting the multicast traffic. I was thinking of using ESP-NULL (AH is optional) for the IGMP/PIM packets. Affably, Kent