01-24-2019 11:25 AM - edited 02-21-2020 08:42 AM
Trying to VPN peer an ASA 5505 to a 3rd party's Palo Alto. The only IKE/IPSec options they have are CBC and GCM. Are either of those the same as the AES256-SHA that the ASA's support or am I out of luck?
Solved! Go to Solution.
01-24-2019 11:39 AM
01-24-2019 11:39 AM
01-24-2019 11:58 AM
Hi,
Thanks for replying. So basically I would just configure the ASA the same way I always have and not worry about the CBC verbiage right? The thing that's throwing me off is on the Palo it is called "AES-256-CBC," whereas on the ASA it is not called "CBC" anywhere.
01-24-2019 12:05 PM
06-20-2024 07:52 PM
Is there Cisco doc reference that specifies that?
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide