Cisco Support Community
cancel
Showing results for 
Search instead for 
Did you mean: 
Announcements

Welcome to Cisco Support Community. We would love to have your feedback.

For an introduction to the new site, click here. And see here for current known issues.

New Member

Support for HMAC-SHA256?

Hi,

I'm trying to find if any of the various flavours Cisco router/firewall would be capable of establishing an IPsec session that used HMAC-SHA256 in the Authentication field of the ESP header? So far I've drawn a blank and can only find support for SHA-1 implementations.

Regards,

GRAHAM.

2 REPLIES
Silver

Re: Support for HMAC-SHA256?

I think PIX and ASA support HMAC-SHA with 256 bit key for ESP. Following link may help you

http://www.cisco.com/en/US/products/sw/secursw/ps2308/products_configuration_example09186a00801e71c0.shtml

New Member

Re: Support for HMAC-SHA256?

I don't believe Cisco support HMAC-SHA256 right now. They support HMAC-SHA1 with AES 256 for payload encryption.

673
Views
0
Helpful
2
Replies