SSH Server CBC Mode Ciphers and Weak MAC Algorithms Enabled

Hi guys,

Any idea to disable CBC mode cipher encryption, and enable CTR or GCM cipher mode encryption as well as disable MD5 and 96-bit MAC algorithms in peplink balance?

Please open ticket for us to review your testing method and result. We will escalate to the engineering team if needed.

1 Like

Was this resolved? I have a customer who requires GCM ciphers for their IPSec tunnel but Iā€™m unable to comply using the Pepwave UBR.

This is an old thread and it was resolved. Please ensure you are using latest firmware version.

1 Like

Does this solution apply to the Pepwave UBR LTE? I have the latest firmware and do not see an option for GCM ciphers.

Sorry for the confusion. I am referring to the subject SSH Server CBC Mode Ciphers. For IPSec, below is what we support for the time being.

image.png

I saw you submitted a feature request - Peplink | Pepwave - Forum and we have filed it.

1 Like