Hi Anil,

Please find my reply inline.

On Tue, May 19, 2009 at 10:55 AM, Anil Maguluri <
anil.magul...@lntinfotech.com> wrote:

>
> Hi All,
>
> I would like to know what are the different certificates to support in
> IKEv2?

  raj> The most commonly supported certificate forms are:
http://tools.ietf.org/html/draft-ietf-ipsecme-ikev2bis-03
Section 3.6
......

Certificate Encoding                 Value
      ----------------------------------------------------

      *X.509 Certificate - Signature        4
*      *Hash and URL of X.509 certificate    12*
....


> Is it mandatory to support CERT and CERTREQ payloads in IKE_AUTH message?

   raj> NO.

>
> If yes, please let me know the supported Certificates information and
> corresponding
> RFC numbers.
>
> Also please let me know IKEv2 opensource code which contains the
> certificates
> information.

   raj> StrongSwan and Racoon2 supports most of the features of IKEv2
   http://www.strongswan.org/
   http://www.racoon2.wide.ad.jp/w/


> Thanks for your support.
>
> Regards,
> Anil Kumar Maguluri
> ______________________________________________________________________
>
> _______________________________________________
> IPsec mailing list
> IPsec@ietf.org
> https://www.ietf.org/mailman/listinfo/ipsec
>
> Thanks,
Raj
_______________________________________________
IPsec mailing list
IPsec@ietf.org
https://www.ietf.org/mailman/listinfo/ipsec

Reply via email to