Project

General

Profile

IKEv1 Cipher Suites » History » Version 2

Andreas Steffen, 20.05.2009 11:46
added default key lengths for cbc encryption algorithms

1 1 Andreas Steffen
h1. IKEv1 Cipher Suites
2 1 Andreas Steffen
3 1 Andreas Steffen
h2. Encryption Algorithms
4 1 Andreas Steffen
5 1 Andreas Steffen
|Keyword                         |Description                      |IKE |ESP | 
6 1 Andreas Steffen
|*null*                          |Null encryption                  |    |x   |
7 2 Andreas Steffen
|*aes128* or *aes*               |128 bit AES-CBC                  |x o |x   |
8 2 Andreas Steffen
|*aes192*                        |192 bit AES-CBC                  |x o |x   |
9 2 Andreas Steffen
|*aes256*                        |256 bit AES-CBC                  |x o |x   |
10 2 Andreas Steffen
|*3des*                          |168 bit 3DES-CBC                 |x o |x   |
11 2 Andreas Steffen
|*blowfish128* or *blowfish*     |128 bit Blowfish-CBC             |x o |x   |
12 2 Andreas Steffen
|*blowfish192*                   |192 bit Blowfish-CBC             |x o |x   |
13 2 Andreas Steffen
|*blowfish256*                   |256 bit Blowfish-CBC             |x o |x   |
14 2 Andreas Steffen
|*camellia128* or *camellia*     |128 bit Camellia-CBC             |    |x   |
15 1 Andreas Steffen
|*camellia192*                   |192 bit Camellia-CBC             |    |x   |
16 1 Andreas Steffen
|*camellia256*                   |256 bit Camellia-CBC             |    |x   |
17 2 Andreas Steffen
|*serpent128* or *serpent*       |128 bit Serpent-CBC              |x   |x   |
18 1 Andreas Steffen
|*serpent192*                    |192 bit Serpent-CBC              |x   |x   |
19 1 Andreas Steffen
|*serpent256*                    |256 bit Serpent-CBC              |x   |x   |
20 2 Andreas Steffen
|*twofish128* or *twofish*       |128 bit Twofish-CBC              |x   |x   |
21 1 Andreas Steffen
|*twofish192*                    |192 bit Twofish-CBC              |x   |x   |
22 1 Andreas Steffen
|*twofish256*                    |256 bit Twofish-CBC              |x   |x   |
23 1 Andreas Steffen
24 1 Andreas Steffen
*x* default built-in crypto library
25 1 Andreas Steffen
*o* OpenSSL crypto library
26 1 Andreas Steffen
27 1 Andreas Steffen
28 1 Andreas Steffen
h2. Integrity Algorithms
29 1 Andreas Steffen
30 1 Andreas Steffen
|Keyword                |Description   |IKE     |ESP     |
31 1 Andreas Steffen
|*sha1* or *sha*        |SHA1 HMAC     | 96 bit | 96 bit |
32 1 Andreas Steffen
|*sha2_256* or *sha256* |SHA2_256 HMAC |128 bit | 96 bit |
33 1 Andreas Steffen
|*sha2_384* or *sha384* |SHA2_384 HMAC |192 bit |        |
34 1 Andreas Steffen
|*sha2_512* or *sha512* |SHA2_512 HMAC |256 bit |        |
35 1 Andreas Steffen
|*md5*                  |MD5 HMAC      | 96 bit | 96 bit |
36 2 Andreas Steffen
|*aesxcbc*              |AES XCBC      |        | 96 bit |
37 1 Andreas Steffen
38 1 Andreas Steffen
h2. Diffie Hellman Groups
39 1 Andreas Steffen
40 1 Andreas Steffen
h3. RSA Groups
41 1 Andreas Steffen
42 1 Andreas Steffen
|Keyword    |Modulus    |
43 1 Andreas Steffen
|*modp768*  |  768 bits |
44 1 Andreas Steffen
|*modp1024* | 1024 bits |
45 1 Andreas Steffen
|*modp1536* | 1536 bits |
46 1 Andreas Steffen
|*modp2048* | 2048 bits |
47 1 Andreas Steffen
|*modp3072* | 3072 bits |
48 1 Andreas Steffen
|*modp4096* | 4096 bits |
49 1 Andreas Steffen
|*modp6144* | 6144 bits |
50 1 Andreas Steffen
|*modp8192* | 8192 bits |