[strongSwan] Does StrongSwan use AES-NI instructions on x86 systems?

Noel Kuntze noel at familie-kuntze.de
Tue Feb 10 21:26:46 CET 2015


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA256

Hello Li,

As strongSwan only handles the IKE negotiation and IPsec policy installation,
that is completely up to the kernel. Please check your kernel for that.


Mit freundlichen Grüßen/Regards,
Noel Kuntze

GPG Key ID: 0x63EC6658
Fingerprint: 23CA BB60 2146 05E7 7278 6592 3839 298F 63EC 6658

Am 10.02.2015 um 21:25 schrieb Li, Charlie:
>
> Hi All,
>
> 
>
> I use Ubuntu14.04/StrongSwan 5.1.2 to set up a IPSec gateway in tunnel mode.
>
> 
>
> My question is – does it take advantage of the special AES-NI instructions or just use regular assembly to do the encryption/decryption like AES128-CBC?
>
> 
>
> http://en.wikipedia.org/wiki/AES_instruction_set
>
> 
>
> Thanks,
>
> Charlie
>
>
>
> _______________________________________________
> Users mailing list
> Users at lists.strongswan.org
> https://lists.strongswan.org/mailman/listinfo/users

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v2
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=Vez/
-----END PGP SIGNATURE-----



More information about the Users mailing list