If I want the SA be automatically established after IKE
negotiation, which ipsec-tool shall I use? According to my
understanding, isakmpd can establish the SA automatically after IKE
negotiation, while racoon will write the SA into kernel in practice
until packets requiring security policies are sent between peers. Is
my understanding right? So is isakmpd a bettwe choice? Thanks a lot.
Best Regards, Shen Yan Ran