[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: Question on inbound IPSEC policy check



At 11:22 AM +0530 4/28/03, Jyothi wrote:
>Hi,
>
>If we reject the traffic, how do we inform the peer???
>I think there might be some inter-operability issues.
>
>Thanks
>Jyothi
>

If the SAs are established using IKE, then the payloads passed during 
the IKE negotiations will inform the peer of the range of allowable 
traffic, so it will not be a surprise.

Steve