added ikev1/alg-sha256-96 scenario

This commit is contained in:
Andreas Steffen
2009-12-09 09:35:17 +01:00
parent 353b829177
commit 05ffbc6e59
7 changed files with 94 additions and 0 deletions
@@ -0,0 +1,5 @@
Roadwarrior <b>carol</b> proposes to gateway <b>moon</b> the ESP cipher suite
<b>AES_CBC_128 / HMAC_SHA2_256_96</b> with 96 bit instead of the standard 128 bit
truncation, allowing compatibility with Linux kernels older than 2.6.33
by defining <b>esp=aes128-sha256_96!</b> in ipsec.conf.
A ping from <b>carol</b> to <b>alice</b> successfully checks the established tunnel.