Security and authentication
9.3 IPsec VPN
SCALANCE S615 Command Line Interface
Configuration Manual, 06/2015, C79000-G8976-C406-02
401
● The default list is not used.
● You are in the IPSEC PHASE configuration mode.
The command prompt is as follows:
cli(config-conn-phs2)#
Call up the command with the following parameters:
esp-encryption {3des|aes128cbc|aes192cbc|aes256cbc|aes128ctr|aes192ctr|aes256ctr|
aes128ccm16|aes192ccm16|aes256ccm16|aes128gcm16|aes192gcm16|aes256gcm16}
The parameters have the following meaning:
Triple Data Encryption Standard
Advanced Encryption Standard with 128 bits
Advanced Encryption Standard with 192 bits x x
Advanced Encryption Standard with 256 bits
Advanced Encryption Standard with 128 bits in Counter mode
Advanced Encryption Standard with 192 bits in Counter mode
Advanced Encryption Standard with 256 bits in Counter mode
Advanced Encryption Standard with 128 bits in Counter mode
using a 16 byte Integrity Check Value (ICV)
x x
Advanced Encryption Standard with 192 bits in Counter mode
using a 16 byte Integrity Check Value (ICV)
x x
Advanced Encryption Standard with 256 bits in Counter mode
using a 16 byte Integrity Check Value (ICV)
x x
Advanced Encryption Standard with 128 bits in Galois Coun-
ter mode using a 16 byte Integrity Check Value (ICV)
x x
Advanced Encryption Standard with 192 bits in Galois Coun-
ter mode using a 16 byte Integrity Check Value (ICV)
x x
Advanced Encryption Standard with 256 bits in Galois Coun-
ter mode using a 16 byte Integrity Check Value (ICV)
x x
The encryption algorithm is configured.
You display this setting and other information with the show ipsec conn-phase2 command.