[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: Heartbeats (was RE: keepalives)



Hi Paul,

Paul Koning wrote:
> 
> >>>>> "Ricky" == Ricky Charlet <rcharlet@redcreek.com> writes:
> 
<much trimmed...> 

>  Ricky> * Heatbeats in IKE will not fly for manual keys or if we ever
>  Ricky> swap dynamic key maintenance from IKE to something else.
> 
> I don't see that manual keying is relevant.  By definition, with
> manual keying you manually manage the SA states at both endpoints.  If
> it's manual then it's not automatic, not even a little bit.  So there
> can never be any keying or SA maintenance protocol of any kind when
> you're talking about manual keying.
> 
> Non-IKE?  The subject is keepalives in or for the benefit of IKE.  If
> you're not doing IKE then you can solve the problem in that new
> context, if you wish to (which presumably you will).

If it's for the benefit of IKE only, then why not just rely upon either
ack'd or periodic one-way notifies, and end this discussion?

Scott


References: