@SteveBellovin @letoams @mattblaze @marabou
AH was part of its time (1993-1994). Two good-at-the-time and one awful-misunderstanding reasons:
1.) EXPORT CONTROL! AH & ESP came about right as the clipper chip was dropping.
2.) Fit with then-SIP-now-IPv6. AH's structure fit in very nicely with IPv6 extension headers.
3.) (and this is the misunderstanding one). It was thought that AH could keep source-route headers safe. That thought was wrong. 1/2