This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Serpent / Twofish 256bit?

[FONT=Verdana]Hi, 

Is there any way to activate or add support for serpent-256bit or twofish 256bit ciphers?

When i looked around in the config files in the asl they say
        esp="serpent-sha2_512!"
        ike="serpent128-sha2_512-modp4096!"
To me that is as Astaro say 128bit. 

After some digging i found this regarding http://www.strongswan.org/ and there supported chiphers.
http://www.strongswan.org/uml/testresults/alg-serpent/moon.ipsec.conf
http://www.strongswan.org/uml/testresults/alg-twofish/moon.ipsec.conf
[/FONT][FONT=Verdana]    ike=serpent256-sha2_512-modp4096!
    esp=serpent256-sha2_256!
and
    ike=twofish256-sha2_512-modp4096!
    esp=twofish256-sha2_256!
[/FONT][FONT=Verdana]
[/FONT]To my understanding ASL uses OpenSWAN. But is it still possible to add or use this?


This thread was automatically locked due to age.
Parents Reply Children
  • Yes that had crossed my mind as well but it is the persistand part and also if it supports the high value that confuses me. 

    Well will try some day. Would be nice if they included 256bit support in the next version [:D]
    Today the hardware will not be a problem (performance) so why not enable it?
    To my knowlage those two are the strongest ciphers around. At least public...