Project

General

Profile

Actions

Feature #13647

closed

Support for ChaCha20-Poly1305 encryption with IPsec

Added by Jim Pingle about 2 years ago. Updated about 2 years ago.

Status:
Resolved
Priority:
Normal
Category:
IPsec
Target version:
Start date:
Due date:
% Done:

100%

Estimated time:
Plus Target Version:
23.01
Release Notes:
Default

Description

Copying here so it gets into the release notes.

This requires changes to the FreeBSD source (https://cgit.freebsd.org/src/commit/?id=9f8f3a8e9ad4fbdcdfd14eb4d3977e587ab41341 ) and the PHP code

Changes have already been merged and tested and are working. The latest CE and Plus snapshots can establish P1+P2 with ChaCha20-Poly1305 and pass traffic.


Related issues

Related to Todo #13648: Remove deprecated IPsec algorithms (3DES, Blowfish, and CAST 128 encryption; MD5 HMAC/Hashing)ResolvedJim Pingle

Actions
Actions #1

Updated by Jim Pingle about 2 years ago

  • Related to Todo #13648: Remove deprecated IPsec algorithms (3DES, Blowfish, and CAST 128 encryption; MD5 HMAC/Hashing) added
Actions #2

Updated by Jim Pingle about 2 years ago

  • Description updated (diff)
Actions

Also available in: Atom PDF