[Openswan Users] AES GCM 256

Jacob Edwards jme147 at msstate.edu
Wed Aug 24 15:47:16 EDT 2011


I have successfully used:
AES GCM 128
AES GCM 192

by setting phase2alg, respectively(below). This is using specified algorithm
keylength(128, 192) and adding '32' bits.
phase2alg=aes_gcm_a-160-null
phase2alg=aes_gcm_a-224-null

Now I want to use AES GCM 256, which should work by setting
phase2alg=aes_gcm_a-288-null. But this does not work.
When I start the connection it gets through
STATE_MAIN_I4:ISAKMP SA established

then stalls on
STATE_QUICK_I1: initiate
STATE_QUICK_I1: retransmission; will wait for 20s for response
STATE_QUICK_I1: retransmission; will wait for 40s for response

I am using Openswan 2.6.33 on a Fedora 14 box.

How can I can successfully use AES GCM 256 with Openswan?
Has this problem been fixed in an updated version of Openswan?

Thanks for your help,

-- 
Jacob Edwards
Graduate Research Assistant
MSU Electrical and Computer Engineering Department
jme147 at msstate.edu
jacob.matthew.edwards at gmail.com
-------------- next part --------------
An HTML attachment was scrubbed...
URL: http://lists.openswan.org/pipermail/users/attachments/20110824/739e23a4/attachment.html 


More information about the Users mailing list