diff options
Diffstat (limited to 'testing/tests/ikev1/esp-alg-strict/description.txt')
-rw-r--r-- | testing/tests/ikev1/esp-alg-strict/description.txt | 7 |
1 files changed, 7 insertions, 0 deletions
diff --git a/testing/tests/ikev1/esp-alg-strict/description.txt b/testing/tests/ikev1/esp-alg-strict/description.txt new file mode 100644 index 000000000..b4fc08253 --- /dev/null +++ b/testing/tests/ikev1/esp-alg-strict/description.txt @@ -0,0 +1,7 @@ +Roadwarrior <b>carol</b> proposes <b>3DES</b> encryption (together with +SHA-1 authentication) in the first place and <b>AES-128</b> encryption in +second place for both the ISAKMP and IPsec SAs. Gateway <b>moon</b> defines +<b>ike=aes-128-sha</b> but will accept any other supported algorithm proposed +by the peer during Phase 1. But for ESP encryption <b>moon</b> enforces +<b>esp=aes-128-sha1!</b> by applying the strict flag '!'. + |