AES is a symmetric-key algorithm with different key lengths (128, 192, and 256 bits). FortiOS supports  Suite-B is a set of AES encryption with ICV in GCM mode. FortiOS supports Suite-B on new kernel platforms only. So, let’s look at AES or Advanced Encryption Standard, which is commonly used as a bulk  As we covered, you can actually safely run AES in GCM or CCM with 128-bit keys and be fine. 256-bit encryption is fairly standard in 2019, but every mention of 256-bit Demonstrates AES encryption using the Galois/Counter Mode (GCM).

Block Size. AES-128 is considered by experts to have a security level of 128 bits.

Block size in AES is also 128 bits. CBC: This is the mode of encryption that you want. There are number of modes of encryption, which depends on how fast you want your algorithm to work, parallelism and level of security. Why would I ever use AES-256-CBC if AES-256-GCM is more secure?

These slides are based on Lawrie Brown’s slides stefano:~$ openssl aes-256-cbc -in attack-plan.txt -a enter aes-256-cbc encryption password: Verifying - enter aes-256-cbc encryption password: U2FsdGVkX192dXI7yHGs/4Ed+xEC3ejXFINKO6Hufnc=. Note that you have a choice of AES-128 uses ten rounds, AES-192 uses twelve rounds, and AES-256 uses fourteen rounds. Each added round reduces the chance of a shortcut attack of the kind  AES-CBC remains the most common mode in general use, but AES-GCM is increasing in popularity. AES – Advanced Encryption Standard – is the successor to DES.  Patent free. In public domain. Uses keys of size 128, 192, or 256 bits.


Depending on what Windows Updates the server has applied, the order can be different even with the same version of Windows. What is AES CBC. AES-CBC (cipher block chaining) mode is one of the most used symmetric encryption algorithms. The data size must be nonzero and multiple of 16 bytes, which is the size of a “block”.