On Fri, Jan 20, 2012 at 3:55 PM, Prashant Batra (prbatra) <[email protected]> wrote: > [Prashant] Still, one case if ikesa and childsa expire at the same time, then > assume a node initiates ikesa-rekey, > and wants to initiate childsa-rekey also, then should it wait for the > response of ikesa-rekey to come and then initiate > chilsa-rekey on the new SA or initiate childsa-rekey on the old SA before > processing the ikesa-rekey response.
Don't forget RFC6023. _______________________________________________ IPsec mailing list [email protected] https://www.ietf.org/mailman/listinfo/ipsec
