]> git.ipfire.org Git - people/ms/strongswan.git/blob - testing/tests/esp-alg-strict/description.txt
- import of strongswan-2.7.0
[people/ms/strongswan.git] / testing / tests / esp-alg-strict / description.txt
1 Roadwarrior <b>carol</b> proposes <b>3DES</b> encryption (together with
2 SHA-1 authentication) in the first place and <b>AES-128</b> encryption in
3 second place for both the ISAKMP and IPsec SAs. Gateway <b>moon</b> defines
4 <b>ike=aes-128-sha</b> but will accept any other supported algorithm proposed
5 by the peer during Phase 1. But for ESP encryption <b>moon</b> enforces
6 <b>esp=aes-128-sha1!</b> by applying the strict flag '!'.
7