Hi,

I'm looking at a bug report where openswan sends a Delete/Notify in response to a Delete/Notify message. I vaguely remember things got cleared up on this for IKEv2, but I cannot find in 2401/2406/etc what the proper response is.

If the peer send us a Notify/Delete, they no longer can receive our Notify/Delete. However, without receiving it, they cannot tell we actually deleted the SA.

Should we keep sending Delete/Notify's to Delete messages - even though the majority of those cannot be read by the other peer?

If there is no clear RFC guideance, what do other implementations do in this 
case?

Thanks,

Paul
_______________________________________________
IPsec mailing list
[email protected]
https://www.ietf.org/mailman/listinfo/ipsec

Reply via email to