Продукт | ZASTAVA TestServer (build 2443, 29.06.2022) | |
IP адрес тестового сервера | 82.138.51.230 | |
Порты IKE тестового сервера | udp:500, udp:4500, tcp:4500 | |
Внутренние IP адреса для тестирования | 10.0.0.2 (ping, http) | |
Поддерживаемые стандарты | ||
IKEv2 | RFC 7296 | |
IKEv2 MOBIKE | RFC 4555 | |
IKE and IKEv2 Authentication Using the Elliptic Curve Digital Signature Algorithm (ECDSA) | RFC 4754 | |
IKEv2 Redirect (*) | RFC 5685 | |
IKEv2 Session Resumption | RFC 5723 | |
IKEv2 Childless IKE SA | RFC 6023 | |
IKEv2 Quick Crash Detection | RFC 6290 | |
IKEv2 High Availability Cluster (**) | RFC 6311 | |
IKEv2 Fragmentation | RFC 7383 | |
IKEv2 Signature Authentication | RFC 7427 | |
IKEv2 NULL Authentication | RFC 7619 | |
IKEv2 Clone IKE SA | RFC 7791 | |
IKEv2 Puzzles (*) | RFC 8019 | |
Curve25519 and Curve448 for the IKEv2 Key Agreement | RFC 8031 | |
IKEv2 and ESP over TCP | RFC 8229 | |
IKEv2 Split DNS | RFC 8598 | |
GOST ciphers in ESP and IKEv2 | RFC 9227 | |
Using GOST algorithms in IKEv2 | RFC 9385 | |
Детали тестовой конфигурации | ||
IKE Algorithms | CIPHER | ENCR_AES_GCM_16 (256 bit) ENCR_AES_GCM_8 (256 bit) ENCR_AES_CBC (256 bits) ENCR_AES_CBC (128 bits) ENCR_KUZNYECHIK_MGM_KTREE ENCR_MAGMA_MGM_KTREE |
PRF | SHA2_256-HMAC PRF_HMAC_STREEBOG_512 |
|
AUTH | AUTH_HMAC_SHA2_256_128 | |
KE | X25519 X448 MODP_2048 MODP_3072 MODP_4096 MODP_1536 GOST3410_2012_256 GOST3410_2012_512 |
|
ESP Algorithms | CIPHER | ENCR_AES_GCM_16 (256 bit) ENCR_AES_GCM_8 (256 bit) ENCR_AES_CBC ENCR_KUZNYECHIK_MGM_KTREE ENCR_MAGMA_MGM_KTREE ENCR_KUZNYECHIK_MGM_MAC_KTREE ENCR_MAGMA_MGM_MAC_KTREE |
AUTH | AUTH_HMAC_SHA2_256_128 | |
Authentication methods | Signature, PSK | |
PSK | "SecretPSK" | |
IDr | IP4: 82.138.51.230 |