[strongSwan] Issue with DES Encryption Algorithm

Chinmaya Dwibedy ckdwibedy at yahoo.com
Wed Aug 13 14:35:38 CEST 2014


Hi,
 I am using the load
tester plugin (strongswan 5.0.4) and configured the following
IKE Initiator 
Strongswan.conf:
proposal = des-sha1-modp768  
IKE Responder
Ipsec.conf:
ike=des-sha1-modp768!
While running the scenario, I am getting the following error
message at IKE Responder end and IPSec SA is not getting established. 
10[APP] <1> parsed IKE_SA_INIT request 0 [ ]
10[IKE] <1> 30.30.30.11 is initiating an IKE_SA
10[IKE] <1> ENCRYPTION_ALGORITHM DES_CBC (key size 0)
not supported!
10[IKE] <1> key derivation failed
10[APP] <1> generating IKE_SA_INIT response 0 [
N(NO_PROP) ]
10[NET] <1> sending packet: from 30.30.30.21[500] to
30.30.30.11[500] (36 bytes)
Can anyone please suggest what might be the cause behind the
above failure? 
Regards,
Chinmaya
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.strongswan.org/pipermail/users/attachments/20140813/3e50a9cd/attachment.html>


More information about the Users mailing list