Header
Home | Set as homepage | Add to favorites
  Search the Site     » Advanced Search
Sections
Syndication


Blogroll:

||||| ALL Cisco-Network ARTICLES |||||  
CCIE Journey,
The CCIE Journey,


AES Support and Diffie-Hellman Group 5

Nov 30,2009 by alperen

image

VPN software version 3.6 introduced support for Advanced Encryption Standard (AES), which is more secure than DES and more efficient than 3DES. AES supports 128-, 192-, and 256-bit key strengths. 128-bit AES is significantly faster than 168-bit 3DES and little performance difference exists between 256-bit AES and 168-bit 3DES. AES support was also added to the PIX Firewall with v6.3(1).

VPN software version 3.6 also introduced support for Diffie-Hellman Group 5 (1,536-bit key), which provides greater key exchange security. This feature is set as part of IPSec configuration on the VPN Concentrator, as shown in Figure 15-31.

Click To expand
Figure 15-31: Configuring IKE proposals, including AES and DH 1, 5, and 7

1125 times read

Related news

» Strong SNMPv3 Encryption
by admin posted on Jul 21,2008
» Encapsulating Security Payload (ESP)
by alperen posted on Sep 24,2009
» Step 4-1 Display the Configured IKE Policies
by alperen posted on Sep 27,2009
» Using SSH for Secure Access
by admin posted on Jul 21,2008
» Step 1-2 Determine the IKE (IKE Phase 1) Policies
by alperen posted on Sep 27,2009
Did you enjoy this article?
(total 0 votes)

comment Comments (0 posted) 

More Top News
CCSP-Cisco Certified Security Professional
Most Popular
Most Commented
Featured Author