description.txt 392 B

12345
  1. Roadwarrior <b>carol</b> proposes to gateway <b>moon</b> the ESP cipher suite
  2. <b>AES_CBC_128 / HMAC_SHA2_256_96</b> which uses 96 bit instead of the
  3. standard 128 bit truncation, allowing compatibility with Linux kernels older than 2.6.33
  4. by defining <b>esp=aes128-sha256_96-curve25519!</b> in ipsec.conf.
  5. A ping from <b>carol</b> to <b>alice</b> successfully checks the established tunnel.