Hi Noam,

>     > My question: How is the Cisco ASR supposed to know that the old IKE SA
>     > is no longer relevant?
>     Because it is deleted? 
> 
> How is the peer supposed to know that it is deleted if it doesn't
> receive a DELETE message?

It doesn't send one?  I suppose that's problematic (however, DELETES in
IKEv1 are not really reliable anyway).

Regards,
Tobias
_______________________________________________
Dev mailing list
[email protected]
https://lists.strongswan.org/mailman/listinfo/dev

Reply via email to