Hi Guys:
The CNSSP 15 compliant algorithms suggested by the NSA are as follows of IKE:
DH Group 16,
AES 256,
SHA-384.
And for IPSec:
AES-256-CBC
SHA-384.
Currently the Digi’s with FW 8.1.0.1 only support:
DH Group 14,
AES 256 ----good
SHA-256
For IPSec
AES-256 -----good
SHA-256.
Is there going to be FW update to bump these up?
Cheers,
John