thanks lot for your clarification... On Tue, Dec 18, 2012 at 11:43 PM, Andreas Steffen < andreas.stef...@strongswan.org> wrote:
> On 18.12.2012 19:04, jegathesh malaiyappan wrote: > >> Hi, >> >> I need a clarification on IKEv2 traffic narrowing. >> >> NodeA >> ------------------------------**------------------------------**-------- >> SGW >> >> Responder initiator& responder >> >> 60.60.60.1 - 60.60.60.254 ---- 24 >> 60.60.60.1 - 60.60.63.254 >> ------ 22 >> >> Both the peers are configured , support different address range. It has >> to narrowing the traffic and decide traffic selector. >> >> >> Please clarify me the following, >> >> i) is it always narrow to smaller subnet and use that address >> range ... in the above ex ... 60.60.60.0/24 ? >> >> The narrowing happens always to the smaller network, i.e 60.60.60.0/24 > > > ii) is this traffic narrowing differ based on responder >> configured bigger network and initiator configured smaller network? >> >> If the initiator suggests a smaller network then this is selected. > No "broadening" ever happesn. > > >> Thanks. >> >> >> -- >> By >> Jegathesh, >> > > Regards > > Andreas > > ==============================**==============================**========== > Andreas Steffen andreas.stef...@strongswan.org > strongSwan - the Linux VPN Solution! www.strongswan.org > Institute for Internet Technologies and Applications > University of Applied Sciences Rapperswil > CH-8640 Rapperswil (Switzerland) > ==============================**=============================[**ITA-HSR]== > >
_______________________________________________ Dev mailing list Dev@lists.strongswan.org https://lists.strongswan.org/mailman/listinfo/dev