[Openswan Users] how to enable SHA

Tharanga tharanga at roomsnet.com
Wed Jun 18 23:34:22 EDT 2008


Hi All,

My service provider has enabled  3DES/SHA/DH group 5 on his CISCO PIX. now i
need to connect to it using my openswan. i have configured  following in my
ipsec.conf

 esp=3des-sha1
 ike=3des-sha1-modp1536
 keyexchange=ike

but logs give PAYLOAD MALFOMED error. i think its due to encryption
missmatch on both devices.

is this work with 3DES-SHA-DH=5 ? , i know there are five categories of SHA.
sha-0,sha1...sha512..etc.

is there any specific way to configure SHA on openswan or is it as same as
SHA1 ?

many thanks,
Tharanga



More information about the Users mailing list