Re: [IPsec] What's the most reasonable way for the responder to handle the request containing unknown Key Exchange methods

2024-02-06 Thread Panwei (William)
Hi Paul, Thank you very much for your feedback. I'm happy to see my thoughts are in line with you experts. > > The latter sentence indicates that the responder can continue the > > negotiation when the KE method in the KE payload is unknown and just > needs to reply

Re: [IPsec] What's the most reasonable way for the responder to handle the request containing unknown Key Exchange methods

2024-02-06 Thread Panwei (William)
Hi Tero, Thank you very much for your feedback. I'm glad to see that your thoughts concur with mine. It really helps. Regards & Thanks! Wei PAN (潘伟) > -Original Message- > From: Tero Kivinen > Sent: Tuesday, February 6, 2024 2:52 AM > To: Panwei (William) > Cc:

Re: [IPsec] What's the most reasonable way for the responder to handle the request containing unknown Key Exchange methods

2024-02-05 Thread Paul Wouters
On Mon, 5 Feb 2024, Panwei (William) wrote: Regarding how the responder handles the request containing the new Key Exchange methods (old name was DH Group) that it doesn’t understand, I’ve had a discussion with someone, but we failed to agree with each other due to different interpretations