mirror of
https://github.com/angristan/openvpn-install.git
synced 2025-01-30 18:41:31 +01:00
AES-256 is not necessarily the most secure cipher
Indeed, it it most vulnerable to Timing Attacks : https://en.wikipedia.org/wiki/Length_extension_attack Also, AES 128 is secure enough for every one, so it's still the recommended cipher.
This commit is contained in:
parent
56477bba34
commit
7a5bb93cbe
@ -221,9 +221,9 @@ else
|
||||
echo "and are still viable to date, unlike some default OpenVPN options"
|
||||
echo ''
|
||||
echo "Choose which cipher you want to use for the data channel:"
|
||||
echo " 1) AES-128-CBC (fastest, recommended)"
|
||||
echo " 1) AES-128-CBC (fastest and sufficiently secure for everyone, recommended)"
|
||||
echo " 2) AES-192-CBC"
|
||||
echo " 3) AES-256-CBC (most secure)"
|
||||
echo " 3) AES-256-CBC"
|
||||
echo "Alternatives to AES, use them only if you know what you're doing."
|
||||
echo "They are relatively slower but as secure as AES."
|
||||
echo " 4) CAMELLIA-128-CBC"
|
||||
|
Loading…
x
Reference in New Issue
Block a user