Page 1 of 1

Disable Weak Ciphers such as RC4-MD5

Posted: Fri Feb 22, 2019 8:49 am
by ruchshuk
How can I force the client and softether vpn server to use AES encryption only? When I created the ovpn file using SoftEther VPN Server Manager, I used AES encryption as encryption algorithm and installed it at client side. But I believe server is not accepting it- it is looking for RC4-MD5. How can I fix it?

Re: Disable Weak Ciphers such as RC4-MD5

Posted: Tue May 21, 2019 7:40 am
by cedar
I think SoftEther VPN Server can accept OpenVPN connection with AES encoding.
What error did you see?

Re: Disable Weak Ciphers such as RC4-MD5

Posted: Mon Oct 28, 2019 5:31 pm
by the6thbook
I'm still having this issue. I can't get RC4-MD5 disabled:

https://github.com/SoftEtherVPN/SoftEtherVPN/pull/343

Re: Disable Weak Ciphers such as RC4-MD5

Posted: Sun Nov 03, 2019 12:49 am
by ozone
I have the same issue.

A Mikrotik client connecting to a SE server always reverts to the weak RC4 cipher, although both support much higher ones like various forms of AES256...
But apparently, RC4 is all both nodes can agree upon during the initial handshake.

Until today, found no way of enforcing a higher cipher. Nor got any hint of how to do this on this forum or by someone of SE.

...Still hoping though...