Algorithms[edit]算法[编辑]
Symmetric encryption algorithms[edit]对称加密算法[编辑]
Cryptographic algorithms defined for use with IPsec include:定义用于IPsec的加密算法包括:
- HMAC-SHA1/SHA2 for integrity protection and authenticity.HMAC-SHA1/SHA2用于完整性保护和真实性。
- TripleDES-CBC for confidentiality三倍于CBC的保密性
- AES-CBC and AES-CTR for confidentiality.AES-CBC和AES-CTR保密。
- AES-GCM and ChaCha20-Poly1305 providing confidentiality and authentication together efficiently.AES-GCM和ChaCha20-Poly1305一起有效地提供机密性和身份验证。
Refer to RFC 8221 for details.有关详细信息,请参阅RFC 8221。
Key exchange algorithms[edit]密钥交换算法[编辑]
- Diffie–Hellman (RFC 3526)迪菲·赫尔曼(RFC3526)
- ECDH (RFC 4753)ECDH(RFC 4753)