Hi,

>     We utilize a send only (i.e., no response expected) IKEv2
>     INFORMATIONAL exchange (37) to transmit the congestion information
>     using a notification payload of type TFS_CONGEST_INFO (TBD).  The The
>     Response bit should be set to 0.  As no response is expected the only
>     payload should be the congestion information in the notification
>     payload.
> 
> This very much violates the state machine model of IKEv2, and I would
> not be in favour of this without strong arguments of why requiring a
> response (even if empty) is harmful.

Strongly agree. Actually, one-way notifications are only defined
in IKEv2 for unprotected error notifications when no IKE SA exists
(like INVALID_IKE_SPI notifications). They simply don't work
for regular IKEv2 traffic.

Regards,
Valery.

> Paul
> 
> _______________________________________________
> IPsec mailing list
> [email protected]
> https://www.ietf.org/mailman/listinfo/ipsec

_______________________________________________
IPsec mailing list
[email protected]
https://www.ietf.org/mailman/listinfo/ipsec

Reply via email to