aboutsummaryrefslogtreecommitdiff
path: root/sbin/setkey/setkey.8
diff options
context:
space:
mode:
authorHajimu UMEMOTO <ume@FreeBSD.org>2003-10-13 14:57:41 +0000
committerHajimu UMEMOTO <ume@FreeBSD.org>2003-10-13 14:57:41 +0000
commitb42ac57f4f2c183fda94189f1516ae3c1eff851f (patch)
tree2a5d44fe2e98a214421d56ae5f3dea9a73bd2413 /sbin/setkey/setkey.8
parent3a2e2a0ec850a10ad68cafaabdb5eada6f538988 (diff)
downloadsrc-b42ac57f4f2c183fda94189f1516ae3c1eff851f.tar.gz
src-b42ac57f4f2c183fda94189f1516ae3c1eff851f.zip
- support AES counter mode for ESP.
- use size_t as return type of schedlen(), as there's no error check needed. - clear key schedule buffer before freeing. Obtained from: KAME
Notes
Notes: svn path=/head/; revision=121071
Diffstat (limited to 'sbin/setkey/setkey.8')
-rw-r--r--sbin/setkey/setkey.85
1 files changed, 5 insertions, 0 deletions
diff --git a/sbin/setkey/setkey.8 b/sbin/setkey/setkey.8
index 680803b08688..4ab8927602a0 100644
--- a/sbin/setkey/setkey.8
+++ b/sbin/setkey/setkey.8
@@ -573,8 +573,13 @@ cast128-cbc 40 to 128 rfc2451
des-deriv 64 ipsec-ciph-des-derived-01 (expired)
3des-deriv 192 no document
rijndael-cbc 128/192/256 draft-ietf-ipsec-ciph-aes-cbc-00
+aes-ctr 160/224/288 draft-ietf-ipsec-ciph-aes-ctr-03
.Ed
.Pp
+Note that the first 128 bits of a key for
+.Li aes-ctr
+will be used as AES key, and remaining 32 bits will be used as nonce.
+.Pp
Followings are the list of compression algorithms that can be used as
.Ar calgo
in