[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
Re: Heartbeats (was RE: keepalives)
Hi Paul,
Paul Koning wrote:
>
> >>>>> "Ricky" == Ricky Charlet <rcharlet@redcreek.com> writes:
>
<much trimmed...>
> Ricky> * Heatbeats in IKE will not fly for manual keys or if we ever
> Ricky> swap dynamic key maintenance from IKE to something else.
>
> I don't see that manual keying is relevant. By definition, with
> manual keying you manually manage the SA states at both endpoints. If
> it's manual then it's not automatic, not even a little bit. So there
> can never be any keying or SA maintenance protocol of any kind when
> you're talking about manual keying.
>
> Non-IKE? The subject is keepalives in or for the benefit of IKE. If
> you're not doing IKE then you can solve the problem in that new
> context, if you wish to (which presumably you will).
If it's for the benefit of IKE only, then why not just rely upon either
ack'd or periodic one-way notifies, and end this discussion?
Scott
References: