Valery Smyslov writes:
> 6. Page 19.
> "The recipient of this notification cannot tell
> whether the SPI is for AH or ESP, but this is not important because
> the SPIs are supposed to be different for the two."
>
> Why "is supposed to be different"? RFC4301 clearly states:
> "For a unicast SA, the SPI can be used by itself to specify an SA, or it
> may be
> used in conjunction with the IPsec protocol type."
>
> So I suggest to change as follows:
>
> "The recipient of this notification cannot tell
> whether the SPI is for AH or ESP, but this is not important because
> in many cases the SPIs will be different for the two."
>
> And some words should be added for the case when SPIs are not
> different for AH and ESP. I have no good suggestion here.
Changed:
The recipient of this notification cannot tell whether the SPI
is for AH or ESP, but this is not important because the SPIs
are supposed to be different for the two.
To:
The recipient of this notification cannot tell whether the SPI
is for AH or ESP, but this is not important because in many
cases the SPIs will be different for the two.
--
[email protected]
_______________________________________________
IPsec mailing list
[email protected]
https://www.ietf.org/mailman/listinfo/ipsec