First: my apology for allowing this long post on the mailing list. I didn't see the part about its length in the list admin interface.
Second: the reason I let it on was to remind people that asking about specific implementations is inappropriate for this mailing list. Nikhil: you need to take your question to a vendor-specific (in this case, Linux-specfic) mailing list. The list you posted this to is for the IPsec standard, not every implementation of IPsec. --Paul Hoffman At 5:05 PM +0530 2/3/10, nikhil mittal wrote: >hello, > >1. how rekey actually works practically on Linux machine > >2. Feb 2 11:53:19 zenlin16 pluto[3097]: "sample1" #6: issuer cacert not >found > Feb 2 11:53:19 zenlin16 pluto[3097]: "sample1" #6: X.509 certificate >rejected > connection goes up even tough log file show above mentioned entries > >3. does the intermediate node add up automatically in an esp tunnel mode >connection between two machines > > > >-- >Nikhil Mittal --Paul Hoffman, Director --VPN Consortium _______________________________________________ IPsec mailing list IPsec@ietf.org https://www.ietf.org/mailman/listinfo/ipsec