02-08-2018 08:57 AM - edited 03-12-2019 05:00 AM
IPSEC Phase II session keys are derived by the below formula, where SKEYIDd comes from phase I. When phase II performs rekey while phase I is still up/same, how are the new keys different from the previous ones ? The parameters of the formula seems to be the same:
KEYMAT = HMAC (SKEYIDd,protocol|SPI|NonceI|NonceR)
02-08-2018 09:32 AM
02-08-2018 09:45 AM
02-09-2018 09:06 AM
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide