01-24-2019 11:25 AM - edited 02-21-2020 08:42 AM
Trying to VPN peer an ASA 5505 to a 3rd party's Palo Alto. The only IKE/IPSec options they have are CBC and GCM. Are either of those the same as the AES256-SHA that the ASA's support or am I out of luck?
Solved! Go to Solution.
01-24-2019 11:39 AM
01-24-2019 11:39 AM
01-24-2019 11:58 AM
Hi,
Thanks for replying. So basically I would just configure the ASA the same way I always have and not worry about the CBC verbiage right? The thing that's throwing me off is on the Palo it is called "AES-256-CBC," whereas on the ASA it is not called "CBC" anywhere.
01-24-2019 12:05 PM
Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: