sci.crypt
  Home FAQ Contact Sign in
sci.crypt only
 
Advanced search
November 2006
motuwethfrsasuw
  12345 44
6789101112 45
13141516171819 46
20212223242526 47
27282930    48
2006
 Jan   Feb   Mar   Apr 
 May   Jun   Jul   Aug 
 Sep   Oct   Nov   Dec 
2008 2007 2006  
total
sci.crypt Profile…
RELATED GROUPS

POPULAR GROUPS

 Up
  IPsec/IKE Practical Protocol Question         


Author: Anonymous
Date: Nov 11, 2006 04:01

I have two peers that are communicating using IPsec and IKE to establish
their SAs. One of the peers, call it peer A, always initiates conversation
with the other, peer B (never the other way around). It seems that if peer
B resets (or otherwise loses its IPsec SA information), then peer A will not
be able to initiate communications with peer B until peer A's SAs expire
(peer A at the OS layer has no idea that peer B has lost its IPsec SA
information), as peer A will be encrypting via its existing IPsec SA. Is
this true? Is there a way to 'correct' this at the IPsec layer? Thanks!
no comments