[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: QoS selectors (was LAST CALL: IKE)




The only thing that comes to mind is to add a notify payload when 
rekeying that identifies the SPI of
the SA being rekeyed. But this is a bits on wire change.... I guess this 
is why Radia decided to just drop
the diffserv issue in SF.

- Jeff

Stephen Kent wrote:

> At 11:08 AM -0400 6/30/03, jpickering@creeksidenet.com wrote:
> 
>> Re: multiple "redundant" SAs:
>> In order to support simultaneous rekey tie-breaking as currently 
>> defined, one needs to be able to be able to determine
>> if the attempt to create a child is a rekey and if so, which SA is 
>> being rekeyed. The only way to do this per current
>> version is to examine the traffic selectors which presumes no 
>> redundant SAs.
>> 
>> - Jeff
>> 
> 
> Whoops!
> 
> Any suggestions on how to avoid messing up the rekey heuristic and not 
> negotiating the DiffServ values for SAs?
> 
> Steve
> 
> 
>