Hi,

> 1) Does this mean to support IKE layer fragmentation UE needs to send
> NON_FIRST_FRAGMENTS_ALSO in the first IKE_AUTH message ?

NON_FIRST_FRAGMENT_ALSO is unrelated to IKE message fragmentation as
defined by RFC7383, but defines how to handle non-first fragments on
tunnel mode payload traffic (over ESP).

strongSwan never sends this notify and ignores it. Please refer to
RFC4301 7.2 for more details about support for non-initial fragments.

Regards
Martin

_______________________________________________
Users mailing list
[email protected]
https://lists.strongswan.org/mailman/listinfo/users

Reply via email to