32 |
P a g e
4.7.3.1.2
Encapsulating Security Payload (ESP) settings
The ESP protocol provides origin authenticity, integrity, and confidentiality protection of a
packet.
Figure 33.
Encapsulating Security Payload (ESP) settings
Encapsulation Protocol
– select encapsulation protocol: Authentication header (AH) or
Encapsulating Security Payload (ESP).
Inbound SPI
– specify the inbound compression [256-65535].
Outbound SPI
– specify the outbound compression [256-65535].
Authentication algorithm
– specify the authentication algorithm [Open system/hmac-
md5/hmac-sha1/keyed-md5/keyed-sha1/hmac-sha2-256/hmac-sha2-384/hmac-sha2-512/hmac-
ripemd160/aes-xcbc-mac].
Preshare key
– specify the ESP authentication secret [string]. Secret’s length depends on
selected algorithm, eg. 128 bit long secret is 16 characters in length, 128 bits / 8 bits (one character) =
16. The algorithm key lengths in bits are:
hmac-md5 - 128
hmac-sha2-384 - 384
hmac-sha1 - 160
hmac-sha2-512 - 512
keyed-md5 - 128
hmac-ripemd160 - 160
keyed-sha1 - 160
aes-xcbc-mac – 128
hmac-sha2-256 - 256
Encryption
– specify the authentication algorithm [Open system/des-cbc/ blowfish-cbc/
cast128-cbc/des-deriv/3des-deriv/rijndael-cbc/twofish-cbc/aes-ctr].
Preshare key
– specify the ESP encryption secret [string]. Secret’s length depends on selected
algorithm, eg. 128 bit long secret is 16 characters in length, 128 bits / 8 bits (one character) = 16. The
algorithm key lengths in bits are:
des-cbc - 64
3des-deriv - 192
blowfish-cbc - 40 to 448
rijndael-cbc -128/192/256
cast128-cbc - 40 to 128
twofish-cbc - 0 to 256
des-deriv - 64
aes-ctr - 160/224/288
Summary of Contents for RUT104 HSUPA
Page 1: ......