<div dir="ltr">Hi,<div><br></div><div>I have a query regarding standard behavior for IKEv2 IPv6 packets on port 4500.</div><div>Although NAT is not required in IPv6 case, RFC doesn't explicitly prohibit IPv6 packets on UDp port 4500.</div>
<div><br></div><div>Want to know strong-swan behavior in same scenario. Does Strong-swan process IPv6 packet on UDP port 4500?</div><div><br></div><div><div><br></div><div>RFC 5996 reference</div><div>2. IKE Protocol Details and Variations</div>
<div>IKE normally listens and sends on UDP port 500, though IKE messages</div><div> may also be received on UDP port 4500 with a slightly different</div><div> format (see Section 2.23)</div><div><br></div><div>2.23. NAT Traversal</div>
<div>An initiator can use port 4500 for both IKE and ESP, regardless of</div><div> whether or not there is a NAT, even at the beginning of IKE</div></div><div><br></div><div><br></div><div>Thanks</div><div>Mukesh</div></div>