This document adds a small number of mandatory tests required for the secure operation of the Internet Key Exchange Protocol version 2 (IKEv2) with elliptic curve groups. No change is required to IKE implementations that use modular exponential groups@ other than a few rarely used so-called Digital Signature Algorithm (DSA) groups. This document updates the IKEv2 protocol@ RFC 5996.