A-12
Cisco Security Appliance Command Line Configuration Guide
OL-12172-03
Appendix A Feature Licenses and Specifications
VPN Specifications
Cryptographic Standards
The security appliance supports numerous cryptographic standards and related third-party products and
services, including those shown in
Table A-12
.
Table A-12
Cryptographic Standards
Type
Description
Asymmetric (public key) encryption algorithms
RSA public/private key pairs, 512 bits to 4096 bits
DSA public/private key pairs, 512 bits to 1024 bits
Symmetric encryption algorithms
AES—128, 192, and 256 bits
DES—56 bits
3DES—168 bits
RC4—40, 56, 64, and 128 bits
Perfect forward secrecy (Diffie-Hellman key
negotiation)
Group 1— 768 bits
Group 2—1024 bits
Group 5— 1536 bits
Group 7—163 bits (Elliptic Curve Diffie-Hellman)
Hash algorithms
MD5—128 bits
SHA-1—160 bits
X.509 certificate authorities
Cisco IOS software
Baltimore UniCERT
Entrust Authority
iPlanet/Netscape CMS
Microsoft Certificate Services
RSA Keon
VeriSign OnSite
X.509 certificate enrollment methods
SCEP
PKCS #7 and #10
Summary of Contents for 500 Series
Page 38: ...Contents xxxviii Cisco Security Appliance Command Line Configuration Guide OL 12172 03 ...
Page 45: ...P A R T 1 Getting Started and General Information ...
Page 46: ......
Page 277: ...P A R T 2 Configuring the Firewall ...
Page 278: ......
Page 561: ...P A R T 3 Configuring VPN ...
Page 562: ......
Page 891: ...P A R T 4 System Administration ...
Page 892: ......
Page 975: ...P A R T 5 Reference ...
Page 976: ......