Added support for AES-256-CBC

This enables support for AES-256 for anyconnect clients which
do not support AES-GCM. Also prioritized the 256-bit ciphers
higher than the 128-bit ones.

Signed-off-by: Nikos Mavrogiannopoulos <nmav@gnutls.org>
This commit is contained in:
Nikos Mavrogiannopoulos
2018-07-19 07:59:59 +02:00
parent 5a2bed6a58
commit 579cfc0ead
8 changed files with 528 additions and 8 deletions

View File

@@ -89,9 +89,9 @@ ${IP} netns exec ${NSNAME2} ip addr
${IP} netns exec ${NSNAME2} ip route
${IP} netns exec ${NSNAME1} ip route
${IP} netns exec ${NSNAME1} ping -c 1 ${ADDRESS}
${IP} netns exec ${NSNAME2} ping -c 1 ${ADDRESS}
${IP} netns exec ${NSNAME2} ping -c 1 ${CLI_ADDRESS}
${IP} netns exec ${NSNAME1} ping -c 1 ${ADDRESS} >/dev/null
${IP} netns exec ${NSNAME2} ping -c 1 ${ADDRESS} >/dev/null
${IP} netns exec ${NSNAME2} ping -c 1 ${CLI_ADDRESS} >/dev/null
set +e
CMDNS1="${IP} netns exec ${NSNAME1}"