Also remember in that time that a couple of cryptographers actually thought the "SIP Security Architecture" (AH & ESP) could NOT work for IPv4. We@NRL addressed that misconception quickly enough, but even without proving it via code, that sentiment induced a head-tilt-inducing level of WTF in us.
@danmcd@letoams@mattblaze@marabou Btw: while I was working on IPsec I also wrote one of my favorite papers: Probable Plaintext Cryptanalysis, https://www.cs.columbia.edu/~smb/papers/probtxt.pdf. (Some folks at AT&T wondered if we should patent it. I pointed out that a) the NSA would be the major user, and we'd never know if they infringed or indeed if they already had it, and b) much of the concept, especially the two-packet variant, was likely anticipated by the attacks on Enigma…)