Project

General

Profile

IKEv1 Cipher Suites » History » Version 5

« Previous - Version 5/31 (diff) - Next » - Current version
Andreas Steffen, 16.06.2009 11:26
added DH group number


IKEv1 Cipher Suites

Encryption Algorithms

Keyword Description IKE ESP
null Null encryption x
aes128 or aes 128 bit AES-CBC x o x
aes192 192 bit AES-CBC x o x
aes256 256 bit AES-CBC x o x
3des 168 bit 3DES-EDE-CBC x o x
blowfish128 or blowfish 128 bit Blowfish-CBC x o x
blowfish192 192 bit Blowfish-CBC x o x
blowfish256 256 bit Blowfish-CBC x o x
camellia128 or camellia 128 bit Camellia-CBC x
camellia192 192 bit Camellia-CBC x
camellia256 256 bit Camellia-CBC x
serpent128 or serpent 128 bit Serpent-CBC x x
serpent192 192 bit Serpent-CBC x x
serpent256 256 bit Serpent-CBC x x
twofish128 or twofish 128 bit Twofish-CBC x x
twofish192 192 bit Twofish-CBC x x
twofish256 256 bit Twofish-CBC x x

x default built-in crypto library
o OpenSSL crypto library

Integrity Algorithms

Keyword Description IKE ESP
sha1 or sha SHA1 HMAC 96 bit 96 bit
sha2_256 or sha256 SHA2_256 HMAC 128 bit 96 bit
sha2_384 or sha384 SHA2_384 HMAC 192 bit
sha2_512 or sha512 SHA2_512 HMAC 256 bit
md5 MD5 HMAC 96 bit 96 bit
aesxcbc AES XCBC 96 bit

Diffie Hellman Groups

RSA Groups

Keyword DH Group Modulus IKE
modp768 1 768 bits g o
modp1024 2 1024 bits g o
modp1536 5 1536 bits g o
modp2048 14 2048 bits g o
modp3072 15 3072 bits g o
modp4096 16 4096 bits g o
modp6144 17 6144 bits g o
modp8192 18 8192 bits g o

Elliptic Curve Groups

Keyword DH Group Modulus IKE
ecp192 25 192 bits o
ecp224 26 224 bits o
ecp256 19 256 bits o
ecp384 20 384 bits o
ecp521 21 521 bits o

g GMP multi-precision library
o OpenSSL crypto library