[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: dynamic ports vs. rekeying



On 5 Apr 2002, Andrew Krywaniuk wrote:
> On the subject of rekeying, I agree that using the old phase 1s until they
> expired (as specified in draft-jenkins) didn't work, but the immediate
> switch-over in draft-specncer is too hasty.

I assume you're speaking in the context of rekeying which also plays games
with selectors?  Without that, we have extensive operational proof that
the immediate cutover works just fine... 

                                                          Henry Spencer
                                                       henry@spsystems.net