OSX VPN Client DES Support


Simple answer: NO



Scenario
We had an ASA 5510 used as a firewall for a project. Eventually we needed to give remote access to the environment. The firewall didn't have the 3DES/AES license. It wasn't a big deal originally because we created a site-to-site tunnel with an Cisco 881 ISR. Then we had a few remote parties using the Cisco VPN Client on Windows and VPNC on Ubuntu.


The problem occurred for OSX users. While having a convenient built in VPN client, we could not get the connection to work. Some google research revealed:

"For Lion, the client uses 3des or aes, it doesn't support des."


Reference: https://supportforums.cisco.com/docs/DOC-15887