[support] Dynamic keyring with racoon2 operation

qhtf126 qhtf126 at 126.com
Mon Jul 6 22:43:05 JST 2009


>   1. Dynamic keyring with racoon2 operation (Brama Subhifajar) > > >---------------------------------------------------------------------- > >Message: 1 >Date: Mon, 6 Jul 2009 01:18:56 +0800 (SGT) >From: Brama Subhifajar <first_shaboo at yahoo.com> >Subject: [support] Dynamic keyring with racoon2 operation >To: support at ml.nautilus6.org >Message-ID: <656204.98931.qm at web76315.mail.sg1.yahoo.com> >Content-Type: text/plain; charset="utf-8" > >Hi, > >Finally, I have install Dynamic Keyring MIPv6, thanks to Sebastien Decugis for the tutorial. > >I have some questions about how Dynamic keyring on MIPv6 works, > >1. I have capture signaling betwen MN and HA : > >MN -> HA: IKE_SA_INIT >MN <- HA: IKE_SA_INIT >MN -> HA: IKE_AUTH >MN <- HA: IKE_AUTH >MN -> HA: ESP (spi#1, contains the BU message) >MN <- HA: ESP (spi#2, contains the BA) >MN -> HA: CREATE_CHILD_SA >MN <- HA: CREATE_CHILD_SA >MN -> HA: ESP (spi#3, contains MPS) >MN <- HA: ESP (spi#4, contains MPA) > >it is like on tutorial, but if it observed the change about IKEv2 is only happen when MN move to foreign network for the first time. >so when I move to furthermore deferent network, the IKEv2 exchange is not seeing, it is normal like that? >is IKE2 changed only once at the first? if yes, why it don't change on every move? > >2. I have read, MIPv6 have Return Routability capability, the RR procedure is not seeing on signaling, and I was trying to use option "MNDoRouteOptimization = enabled" and "IPSec = enable" the daemon say its impossible. can you tell me why? > >3. Can you tell me about Tunneling Payload and protecting HoTi/CoTi? > >many thanks before.. > > > >      &quot;Coba Yahoo! Mail baru yang LEBIH CEPAT. Rasakan bedanya sekarang!  >http://id.mail.yahoo.com&quot; >-------------- next part -------------- >An HTML attachment was scrubbed... >URL: http://ml.nautilus6.org/pipermail/support/attachments/20090706/691b6419/attachment.html  > >------------------------------ > >_______________________________________________ >Support mailing list >Support at ml.nautilus6.org >http://ml.nautilus6.org/mailman/listinfo/support > > >End of Support Digest, Vol 45, Issue 1 >**************************************

Hi,
I have the same problem like you   and    can't move to foreign network , I want to know how can you resolve  this problem .  please  tell   me  the  detail  .Thanks!

                                                               










-------------- next part --------------
An HTML attachment was scrubbed...
URL: http://ml.nautilus6.org/pipermail/support/attachments/20090706/7a9614d7/attachment.htm 


More information about the Support mailing list