[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: 112 bit 3DES



"Volpe, Victor" wrote:
 
> According to the 3DES draft "draft-ietf-ipsec-ciph-des3-00.txt", 112 bit
> 3DES must not be negotiated via IKE and is therefore a non-compliant key
> length for 3DES.  Did I read this correctly?  What is the status of the
> draft?

RFC 2409, page 38:

    The key for 3DES-CBC is the first twenty-four (24) bytes of a key
    derived in the aforementioned pseudo-random function feedback method.


References: