cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
974
Views
5
Helpful
3
Replies

515e VPN encryption

johnnymac
Level 4
Level 4

Hi,

Can anyone tell me how i could change the encryption that our client to site uses from des/md5 to 3des/sha and if there is a common standard for what is considered to most secure.

Thanks

J Mack

3 Replies 3

zulqurnain
Level 7
Level 7

hi

as what i understood from your question you pix should have as following

--:Defines IPSec encryption and authentication algorithms

crypto ipsec transform-set yourname esp-3des esp-sha-hmac

--: Defines crypto map.

crypto map transam 1 set transform-set yourname

--: Defines ISAKMP policy.

isakmp policy 10 encryption 3des

isakmp policy 10 hash sha

if help full please rate it

Hi Thanks,

I am running a l2l as well as a client to site, is it ok to have them on different encryption levels.

hi

i am not so sure as i have never tested such configuration or never came across but as for the understanding i believe not.

Review Cisco Networking for a $25 gift card