[strongSwan-dev] RFC 6054 support with HA plugin

Tobias Brunner tobias at strongswan.org
Tue Apr 3 11:30:36 CEST 2018


Hi Emeric,

> Yes my bad.
> Ok for the ESP part but what about the IKE SA part?
> (Maybe the message id could be used to set the GCM internal counter when changing the responsibility?)

The message ID is what's used as IV for IKE messages if AES-GCM is used.

Regards,
Tobias


More information about the Dev mailing list