Re: Re: Can the two entities have multiple ISAKMP SAs?

phoenixcry@sina.com Wed, 24 April 2002 18:05 UTC

Received: from lists.tislabs.com (portal.gw.tislabs.com [192.94.214.101]) by above.proper.com (8.11.6/8.11.3) with ESMTP id g3OI5Ra21096; Wed, 24 Apr 2002 11:05:27 -0700 (PDT)
Received: by lists.tislabs.com (8.9.1/8.9.1) id NAA18803 Wed, 24 Apr 2002 13:20:29 -0400 (EDT)
From: phoenixcry@sina.com
Message-Id: <200204250533.WAA15239@pubms.pku.edu.cn>
Date: Wed, 24 Apr 2002 22:41:10 +0800
To: "ipsec@lists.tislabs.com" <ipsec@lists.tislabs.com>
Subject: Re: Re: Can the two entities have multiple ISAKMP SAs?
X-mailer: Foxmail 4.1 [cn]
Mime-Version: 1.0
Content-Type: text/plain; charset="GB2312"
Content-Transfer-Encoding: 7bit
Sender: owner-ipsec@lists.tislabs.com
Precedence: bulk

Can you show me the detail of the using cookie to indicate ISAKMP SA?
I mean:two entities (e.g.  ISAKMP servers) can negotiate (and have active) multiple ISAKMP SAs,so the message used for negotiating SAs in Prase 2 should be encoded by one of 
													  ~~~~~~~
ISAKMP SAs. 
I know in phrase 1 it uses cookies to indicate which ISAKMP SA is negotiating now.
Does the cookie in Phrase 2 indicate the selected ISAKMP SA?
If it is,do you mean that we can use some bits of the cookie in Phrase 2 to select ISAKMP SA?

thanks

/phoenixcry
>The cookie.
>
>rwt
>---
>Robert Tashjian
>rwt@netopia.com
>----- Original Message ----- 
>From: <phoenixcry@sina.com>
>To: <ipsec@lists.tislabs.com>
>Sent: Tuesday, April 23, 2002 12:00 AM
>Subject: Can the two entities have multiple ISAKMP SAs?
>
>
>> In RFC2408, it says: 'Two entities (e.g.  ISAKMP servers) can
>>    negotiate (and have active) multiple ISAKMP SAs.'
>> If the two entities can have multiple ISAKMP SAs,
>> Which field of the packet negociating Phrase II SAs indicate
>> the ISAKMP SA used to encode the packet?
>> Thanks for your answer.
>> 
>
>
>
>.