Hi, > 1) Does this mean to support IKE layer fragmentation UE needs to send > NON_FIRST_FRAGMENTS_ALSO in the first IKE_AUTH message ?
NON_FIRST_FRAGMENT_ALSO is unrelated to IKE message fragmentation as defined by RFC7383, but defines how to handle non-first fragments on tunnel mode payload traffic (over ESP). strongSwan never sends this notify and ignores it. Please refer to RFC4301 7.2 for more details about support for non-initial fragments. Regards Martin _______________________________________________ Users mailing list [email protected] https://lists.strongswan.org/mailman/listinfo/users
