[Openswan Users] AES-256 SHA1 Group2

Cassio Bobsin Machado cassiobm at gmail.com
Sun Jul 24 16:42:24 CEST 2005


Paul,

On post...
http://lists.openswan.org/pipermail/users/2005-July/005833.html
...you say that, for RHEL4, 2.4.0dr3 must be used, and not dr5 and
dr6. But you also comment something about code changes backported.
Does that mean that I can just compile dr3 as it is provided, or do I
have to take some code from dr5 before compiling?

Thanks,

Cassio Bobsin Machado


2005/7/24, Paul Wouters <paul at xelerance.com>:
> On Sat, 23 Jul 2005, Cassio Bobsin Machado wrote:
>
> > I'm almost done with that VPN with a CiscoPIX that wants "AES-256 SHA1
> > Group2" for IKE. (now I'm running RHEL4 with OpenSwan 2.3.1)
> >
> > I've got the same problem that this thread from March/05 but,
> > unfortunately, the solution was not posted to the list.
>
> There was a bug in the aes256 code, found by Astaro. Try a 2.4.0dr
> release to see if it fixes your problem
>
> Paul
>


More information about the Users mailing list