I just wanted some clarification on a point if someone would be kind enough to help.
During IKE Phase 2 exchange, my understanding is that the transform sets are agreed on, in order to establish the IPSEC SA.
Can someone confirm whether the "Interesting Traffic" pattern/acl is exchanged between the peers with the expectation on a mirrored match? My understanding is that it isn't, but this is being challenged by a fairly knowledgable chap I know.
If someone could confirm my understanding is correct (or the reverse) and let me know if there are any other options exchanged at Phase 2 I'd be really grateful.
We have configured the outside and inside Interface with official ipv6 adresses, set a default route on outside Interface to our router, we also have definied a rule , which also gets hits, to permit tcp from inside Interface to any6.
In Syslog I also se...