Hello,
Are there any plans to support Diffie Hellman Groups 19 to 21 (ecp256, ecp384, ecp521)?
There is support for DH15-18, which - according to Cisco - offer acceptable and good security. (Source: http://www.cisco.com/c/en/us/about/secu ... raphy.html)
I understand however that DH15-18 requires more processing power than DH19-21.
Perhaps on the mikrotik, this doesn't pose such an issue, since it's dedicated for this purpose, but on other devices, this could be an issue.
Therefore I believe it would be nice to have support for DH19-21.
Windows does not support DH15-18, but supports DH19-20 (ref https://technet.microsoft.com/en-us/lib ... .630).aspx).
FYI: those that are interested, can found a nice overview of different Cipher Suites at https://wiki.strongswan.org/projects/st ... pherSuites
Kind regards,
Bert