Hi
I have a couple of questions/comments about IKEv2 bis:

- in the section 2.9 on Traffic Selector Negotiation, I think it will be good 
to have a few sentences about the relation (or lack of) between traffic 
selector and static routing especially when dealing with AH/ESP tunnel mode. As 
far as I know many implementers will automatically add a static route after the 
traffic selectors are negotiated.

- how should the initiator behaves if the responder did not return valid TSi 
and TSr during Child SA establishment? For instance, the responder has a "bug" 
and returns a TSr that is not within the original requested TSr. Should the 
initiator sends an INFORMATIONAL request with error notification 
TS_UNACCEPTABLE to the responder?


Regards
Steve

_______________________________________________
IPsec mailing list
[email protected]
https://www.ietf.org/mailman/listinfo/ipsec

Reply via email to