<div dir="ltr">Any return??</div><div class="gmail_extra"><br><div class="gmail_quote">2014-12-17 9:18 GMT-02:00 Bruno Galindro da Costa <span dir="ltr"><<a href="mailto:bruno.galindro@gmail.com" target="_blank">bruno.galindro@gmail.com</a>></span>:<br><blockquote class="gmail_quote" style="margin:0 0 0 .8ex;border-left:1px #ccc solid;padding-left:1ex"><div dir="ltr">How can I check if my ipsec service and my <span style="color:rgb(255,0,0)"><u>O.S.</u></span> has ESP encryption support? I can only establish Phase 1 and 2 using 3des:<div><div class="h5"><br clear="all"><br>    ike=3des-sha1-modp1024<br>    esp=3des-sha1<br><br># ipsec verify<br>Checking your system to see if IPsec got installed and started correctly:<br>Version check and ipsec on-path                       <div>          [OK]<br>Linux Openswan U2.6.38/K3.13.0-29-generic (netkey)<br>Checking for IPsec support in kernel                            [OK]<br> SAref kernel support                                           [N/A]<br> NETKEY:  Testing XFRM related proc values                      [OK]<br>    [OK]<br>    [OK]<br>Checking that pluto is running                                  [OK]<br> Pluto listening for IKE on udp 500                             [OK]<br> Pluto listening for NAT-T on udp 4500                          [OK]<br>Checking for 'ip' command                                       [OK]<br>Checking /bin/sh is not /bin/dash                               [WARNING]<br>Checking for 'iptables' command                                 [OK]<br>Opportunistic Encryption Support                                [DISABLED]</div><br><br><br></div></div><div class="gmail_extra"><br><div class="gmail_quote">2014-12-17 9:17 GMT-02:00 Bruno Galindro da Costa <span dir="ltr"><<a href="mailto:bruno.galindro@gmail.com" target="_blank">bruno.galindro@gmail.com</a>></span>:<div><div class="h5"><blockquote class="gmail_quote" style="margin:0px 0px 0px 0.8ex;border-left:1px solid rgb(204,204,204);padding-left:1ex"><div dir="ltr">How can I check if my ipsec service and my S.O. has ESP encryption support? I can only establish Phase 1 and 2 using 3des:<br clear="all"><div><br>    ike=3des-sha1-modp1024<br>    esp=3des-sha1<br><br># ipsec verify<br>Checking your system to see if IPsec got installed and started correctly:<br>Version check and ipsec on-path                                 [OK]<br>Linux Openswan U2.6.38/K3.13.0-29-generic (netkey)<br>Checking for IPsec support in kernel                            [OK]<br> SAref kernel support                                           [N/A]<br> NETKEY:  Testing XFRM related proc values                      [OK]<br>    [OK]<br>    [OK]<br>Checking that pluto is running                                  [OK]<br> Pluto listening for IKE on udp 500                             [OK]<br> Pluto listening for NAT-T on udp 4500                          [OK]<br>Checking for 'ip' command                                       [OK]<br>Checking /bin/sh is not /bin/dash                               [WARNING]<br>Checking for 'iptables' command                                 [OK]<br>Opportunistic Encryption Support                                [DISABLED]<span><font color="#888888"><br><br><br>-- <br><div>Att.<br>Bruno Galindro da Costa<br></div>
</font></span></div></div>
</blockquote></div></div></div><div><div class="h5"><br clear="all"><br>-- <br><div>Att.<br>Bruno Galindro da Costa<br></div>
</div></div></div></div>
</blockquote></div><br><br clear="all"><div><br></div>-- <br><div class="gmail_signature">Att.<br>Bruno Galindro da Costa<br></div>
</div>