summaryrefslogtreecommitdiff
path: root/testing/tests/ikev1/esp-alg-weak/description.txt
blob: e49b6c62030e2878bf6b9a9fcedbed4c87b2fb34 (plain)
1
2
3
4
5
The roadwarrior <b>carol</b> proposes <b>DES_CBC</b> encryption with HMAC_MD5 authentication
as the only cipher suite for the IPsec SA. Because gateway <b>moon</b> does
not use an explicit <b>esp</b> statement any strong encryption algorithm will be
accepted but any weak key length will be rejected by default and thus the ISAKMP SA
is bound to fail.