Datatek IPv6 Transformer User Manual User Manual
Page 66

S E C T I O N 8
W E B G U I S Y S T E M
66
Encryption Algorithm
Key Length [bits]
des-cbc
64
3des-cbc
192
aes-cbc
128/192/256
aes-ctr
160/224/288
aes-ctr is not recommended for use with static keys. Only use aes-ctr if IKE (Internet Key Exchange) is
used for establishing keys.
Hash Algorithm
This is the authentication algorithm used to calculate the authentication data field applied across
the encrypted payload. Each algorithm must use a key of a specific length.
Hash Password
This password or key, is used by the authentication algorithm to provide authentication and
integrity. The authentication key can be entered as an ASCII character string in double quotes or
as hexadecimal sequence starting with 0x. If the key is entered as an ASCII string, each character
is treated as an 8-bit quantity. E.g. “12345678” is a 64 bit key, equivalent to
0x3132333435363738.
Authentication Algorithm
Key Length [bits]
hmac-md5
128
hmac-sha1
160
Security Parameter Index (SPI
)
This is a 32 bit integer that is assigned to the SA. Valid values are 0x100 through 0xFFFFFFFF.
The SPI, in conjunction with the destination IP address and the IPsec protocol, uniquely identify
the SA.