Hi Tricci,
My understanding follows. Please correct me, if I am wrong. The proposed solution is required only when NA(P)T is detected. The FAP(Initiator) should advertise support for NAT Traversal, so it must send NAT_DETECTION_SOURCE_IP and NAT_DETECTION_DESTINATION_IP payloads in the IKE_SA_INIT request. I meant NAT is not optional for this proposed solution. So I feel it may be appropriate to mention 'NAT_DETECTION_SOURCE_IP and NAT_DETECTION_DESTINATION_IP' payloads in high level control flow in section 3. Is not it? Regards, Dharmanandana Reddy Pothula
_______________________________________________ IPsec mailing list [email protected] https://www.ietf.org/mailman/listinfo/ipsec
