cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
194
Views
5
Helpful
1
Replies

Professional generally accepted character length for L2L VPN key?

jmaxwellUSAF
Enthusiast
Enthusiast

Hiya.

I expect there is no exact answer for this, but please tell me your suggestion...

Is there a professional generally accepted (unencrypted) character length for a financial institution-to-vendor site-to-site VPN key?

Thank you.

1 Accepted Solution

Accepted Solutions

Rob Ingram
VIP Master VIP Master
VIP Master

@jmaxwellUSAF 20+ randomly generated chracters - uppercase, lowercase, numbers, symbols.

Use Next Generation Encryption (NGE) algorithms - https://sec.cloudapps.cisco.com/security/center/resources/next_generation_cryptography

That's what I would suggest if using PSK - NIST guide recommends 128bits of entropy.

Also don't shared the PSK amongst different peers.

View solution in original post

1 Reply 1

Rob Ingram
VIP Master VIP Master
VIP Master

@jmaxwellUSAF 20+ randomly generated chracters - uppercase, lowercase, numbers, symbols.

Use Next Generation Encryption (NGE) algorithms - https://sec.cloudapps.cisco.com/security/center/resources/next_generation_cryptography

That's what I would suggest if using PSK - NIST guide recommends 128bits of entropy.

Also don't shared the PSK amongst different peers.

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community:

Recognize Your Peers