FR: DH Group 5 Option for Phase I and Phase II IPSec

Hello Team,

Could we possibly add DH Group 5 as an Option for both Phase I and Phase II IPSec configurations, please? DH5 is slightly more secure than DH2, and there are quirks with legacy hardware that can determine the tunnel type partially by the DH Group used. (Cisco dynamic with DH2 lands on user tunnel, Cisco dynamic with DH5 lands on S2S tunnel). I’m impressed what we have seen in the lab so far. Thanks!