Freedome VPN encryption

F-Secure

Re: Freedome VPN encryption

Hi Valhalla!

 

I was just informed by the Freedome team that there is no possibility to customize Freedome encryption settings at the moment. There are no known plans for it in the future, but we will keep it in consideration.

 

Cheers!

// Chrissy

Has somebody helped you? Give Kudos as a way to say "thanks!"
Has your issue been solved? Mark the post using the "Accept as Solution" button to let others know.
F-Secure

Re: Freedome VPN encryption

AES encryption has recently been enabled for the old sites, too. It took a while, since we wanted to wait for a good percentage of Android clients to be updated to support a smooth transition to the new configuration.

 

Current Freedome encryption parameters, as of 2014-10-24, for Android:

 

Control channel: TLS, 2048 bit RSA auth, typically AES256+SHA1 HMAC but depends on client capabilities
Data channel: AES-128 + SHA1 HMAC
 
For iOS / IPSEC:

 

AES-256 + SHA1 HMAC

 

Scholar

Re: Freedome VPN encryption

Hi HessuH,

thank you for the new information, but
when will the insecure SHA1 be replaced?

Best regards,
Cryptoman
Highlighted
F-Secure

Re: Freedome VPN encryption


@Cryptoman wrote:
thank you for the new information, but
when will the insecure SHA1 be replaced?

Hi,

 

Actually, SHA1 is not insecure when used for HMAC. The collision resistance of SHA-1 is not good any more, but when using the hash function for HMAC, collision resistance is not required (google around for "sha1 hmac security" for more info). Thus, we do not plan to change the HMAC, since it'd increase the overhead (size of transmitted data) a bit.

 

We do have some SHA1 signatures in some certificates still in use. There it is more of an issue, and we plan to roll to new certificates within the next 6 months or so (requires clients to be updated).

Aspirant

Re: Freedome VPN encryption


@HessuH wrote:

AES encryption has recently been enabled for the old sites, too. It took a while, since we wanted to wait for a good percentage of Android clients to be updated to support a smooth transition to the new configuration.

 

Current Freedome encryption parameters, as of 2014-10-24, for Android:

 

Control channel: TLS, 2048 bit RSA auth, typically AES256+SHA1 HMAC but depends on client capabilities
Data channel: AES-128 + SHA1 HMAC
 
For iOS / IPSEC:

 

AES-256 + SHA1 HMAC

 


Can you confirm which encryption suite freedome supports under Windows?

Scholar

Re: Freedome VPN encryption

Hello thanks Very good VPN Freedom VPN would thinks 👑 🌷 👑 🎆 🎇