Hi, This is a follow up of the below mentioned discussion.
1 do with the ID payload?? Same question applies to the recipient of message 6.
Thanks and Regards, Prashant
Hi, This is a follow up of the below mentioned discussion.
Thanks and Regards, Prashant
I answered that in the last message in the thread you reference.
Hi Stephen,
In pre-shared key authentication, does the recipient of message 5 or 6 do anything else with the ID than using it for computation of hash?
Thanks and Regards, Prashant
The recipient should validate the ID according to their security policy the details of which are not dictated by IKE. So, it can vary from doing no validation (common if the ID is an IP address) to doing checks like the ones I describe in the paragraph you quote.
Thanks Stephen for the reply.
Prashant
Have something to add? Share your thoughts — no account required.
Ask the community — no account required