===================================================================
RCS file: /cvsrepo/anoncvs/cvs/www/68.html,v
retrieving revision 1.86
retrieving revision 1.87
diff -u -r1.86 -r1.87
--- www/68.html 2021/01/16 09:10:16 1.86
+++ www/68.html 2021/03/15 10:18:42 1.87
@@ -405,7 +405,7 @@
- Added AES-GCM mode ciphers for IKEv2, configurable in iked.conf(5) with the new "ikesa enc" options aes-128-gcm, aes-256-gcm, aes-128-gcm-12 and aes-256-gcm-12.
- Enabled AES-GCM ciphers by default for IKE and Child SAs resulting in considerable performance improvements with hardware acceleration support.
-
- Enabled SHA2_384 and SHA2_512 by default for improved compatibilty.
+
- Enabled SHA2_384 and SHA2_512 by default for improved compatibility.
- Added the new iked(8) configuration option "set enforcesingleikesa" to limit the number of connections for each peer.
- Added optional iked(8) time-stamp validation for OCSP.
- Added a 30 second timeout for OCSP requests in iked(8).