<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic hi, in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/perfect-forward-secrecy-pfs/m-p/2934734#M144344</link>
    <description>&lt;P&gt;hi,&lt;/P&gt;
&lt;P&gt;PFS in ASA (for IKE phase 2) is disabled by default.&lt;/P&gt;
&lt;P&gt;you just manually choose which DH group to use for PFS.&lt;/P&gt;</description>
    <pubDate>Wed, 14 Dec 2016 02:28:28 GMT</pubDate>
    <dc:creator>johnlloyd_13</dc:creator>
    <dc:date>2016-12-14T02:28:28Z</dc:date>
    <item>
      <title>Perfect Forward Secrecy (PFS)</title>
      <link>https://community.cisco.com/t5/network-security/perfect-forward-secrecy-pfs/m-p/2934732#M144340</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;In router for the PFS, default group is 1.. How about in ASA firewall, which group is default for the PFS.&lt;/P&gt;</description>
      <pubDate>Tue, 12 Mar 2019 08:38:10 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/perfect-forward-secrecy-pfs/m-p/2934732#M144340</guid>
      <dc:creator>Santhosh PS</dc:creator>
      <dc:date>2019-03-12T08:38:10Z</dc:date>
    </item>
    <item>
      <title>Hi Santhosh,</title>
      <link>https://community.cisco.com/t5/network-security/perfect-forward-secrecy-pfs/m-p/2934733#M144342</link>
      <description>&lt;P&gt;Hi Santhosh,&lt;/P&gt;
&lt;P&gt;The ASA uses PFS as an optional command - I do not believe there is a default.&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;You can type "show run all" to see all hidden and default commands on the ASA&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Here is a link about IPSEC&lt;/P&gt;
&lt;P&gt;http://www.cisco.com/c/en/us/support/docs/security/asa-5500-x-series-next-generation-firewalls/119141-configure-asa-00.html&lt;/P&gt;</description>
      <pubDate>Tue, 13 Dec 2016 19:14:17 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/perfect-forward-secrecy-pfs/m-p/2934733#M144342</guid>
      <dc:creator>John Forester</dc:creator>
      <dc:date>2016-12-13T19:14:17Z</dc:date>
    </item>
    <item>
      <title>hi,</title>
      <link>https://community.cisco.com/t5/network-security/perfect-forward-secrecy-pfs/m-p/2934734#M144344</link>
      <description>&lt;P&gt;hi,&lt;/P&gt;
&lt;P&gt;PFS in ASA (for IKE phase 2) is disabled by default.&lt;/P&gt;
&lt;P&gt;you just manually choose which DH group to use for PFS.&lt;/P&gt;</description>
      <pubDate>Wed, 14 Dec 2016 02:28:28 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/perfect-forward-secrecy-pfs/m-p/2934734#M144344</guid>
      <dc:creator>johnlloyd_13</dc:creator>
      <dc:date>2016-12-14T02:28:28Z</dc:date>
    </item>
    <item>
      <title>PFS uses DH policy of 1,2,5..</title>
      <link>https://community.cisco.com/t5/network-security/perfect-forward-secrecy-pfs/m-p/2934735#M144345</link>
      <description>&lt;P&gt;PFS uses DH policy of 1,2,5.. Just wanted to know, If we give just set pfs, which default DH policy it will take up.&lt;/P&gt;</description>
      <pubDate>Wed, 14 Dec 2016 06:49:21 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/perfect-forward-secrecy-pfs/m-p/2934735#M144345</guid>
      <dc:creator>Santhosh PS</dc:creator>
      <dc:date>2016-12-14T06:49:21Z</dc:date>
    </item>
  </channel>
</rss>

