[openstack-dev] [VPNaaS] Support for Stronger hashes and combined mode ciphers

Mark Fenwick mark.fenwick at oracle.com
Wed Jun 8 21:18:14 UTC 2016


Hi,

I was wondering if there are any plans to extend support for IPsec and 
IKE algorithms. Looks like only AES-CBC mode and SHA1 are supported.

It would be nice to see:

SHA256, SHA384, SHA512

As well as the combined mode ciphers:

AES-CCM and AES-GCM

StrongSWAN already supports all of these ciphers and hashes.

Thanks

Mark



More information about the OpenStack-dev mailing list