IKE Certificate Support | RSA Keys—512-bit,
1024-bit, 2048-bit, and 3072-bit keys Digital signature algorithms—SHA-1, SHA-256, SHA-384, or
SHA-512
ECDSA Keys—256-bit and 384-bit keys Digital signature algorithms—SHA-256, SHA-384, or SHA-512
|
IKE—Encryption | DES 3DES AES-128-CBC AES-192-CBC AES-256-CBC
|
IKE—Message Authentication | HMAC-MD5 HMAC-SHA-1 HMAC-SHA-256 HMAC-SHA-384 HMAC-SHA-512
|
IKE—Key Exchange | Diffie-Hellman groups |
PAN-OS Web Certificates | RSA Keys—512-bit,
1024-bit, 2048-bit, 3072-bit, and 4096-bit keys Digital signature algorithms—SHA-1, SHA-256, SHA-384, or
SHA-512
ECDSA Keys—256-bit and 384-bit keys Digital signature algorithms—SHA-256, SHA-384, or SHA-512
|