On Fri, Jan 20, 2012 at 3:55 PM, Prashant Batra (prbatra)
<[email protected]> wrote:
> [Prashant] Still, one case if ikesa and childsa expire at the same time, then 
> assume a node initiates ikesa-rekey,
> and wants to initiate childsa-rekey also, then should it wait for the 
> response of ikesa-rekey to come and then initiate
> chilsa-rekey on the new SA or initiate childsa-rekey on the old SA before 
> processing the ikesa-rekey response.

Don't forget RFC6023.
_______________________________________________
IPsec mailing list
[email protected]
https://www.ietf.org/mailman/listinfo/ipsec

Reply via email to