Hi Mo,
Does that mean it cannot be done?
Recent kernel versions (= 2.6.33, I think) actually support a variable
truncation length. I added support for HMAC_MD5_128 and HMAC_SHA1_160,
which are both defined in RFC 4595 (see [1] for the patch). They are
not part of charon's default proposal, so
PM
To: Mohammady Mahdy
Cc: users@lists.strongswan.org
Subject: Re: [strongSwan] Site-to-Site StrongSwan with a Cisco device
Hello Mo,
strongSwan is aware of the HMAC_MD5_128 algorithm
http://git.strongswan.org/?p=strongswan.git;a=blob;f=src/libstrongswan/crypt
o/signers/signer.h;h