bertieb wrote: » I wouldn't use 3DES and MD5 hashing on any phase across any of my VPN's personally. Use something far stronger. And if your endpoints don't support anything above 3DES, they really need to be upgraded.