SV-207257r608988_rule
V-207257
SRG-NET-000525
SRG-NET-000525-VPN-002330
CAT I
10
Configure the IPsec Gateway to use AES for the IPsec proposal. The following example commands configure the IPsec (phase 2) proposals. The option may also be configured to use the aes-128-cbc, aes-192-cbc, or aes-256-cbc algorithms.
Verify all Internet Key Exchange (IKE) proposals are set to use the AES encryption algorithm.
View the value of the encryption algorithm for each defined proposal.
If the value of the encryption algorithm for any IPsec proposal is not set to use an AES algorithm, this is a finding.
V-207257
False
SRG-NET-000525-VPN-002330
Verify all Internet Key Exchange (IKE) proposals are set to use the AES encryption algorithm.
View the value of the encryption algorithm for each defined proposal.
If the value of the encryption algorithm for any IPsec proposal is not set to use an AES algorithm, this is a finding.
M
2920