aaa authentication saml ssl cipher-list <cipher_list>

Prev Next

Sets the list of cipher suites to be used by the Trellix appliance to communicate with the SAML IdP over SSL and TLS.

Syntax

[no] aaa authentication saml ssl cipher-list { original | fips | cc-ndcpp |fips-and-cc-ndcpp | fips-high-security | cc-ndcpp-high-security | fips-and-cc-ndcpp-high-security | compatible }

Parameters

no

Use the no form of this command to use to the default (compatible) cipher set.

fips

A set of ciphers required by FIPS certification.

cc-ndcpp

A set of ciphers required by the Common Criteria certification.

fips-and-cc-ndcpp

A set of ciphers required by both the FIPS certification and the Common Criteria certification.

fips-high-security

A set of ciphers required by FIPS certification that excludes low-security ciphers.

cc-ndcpp-high-security

A set of ciphers required by the Common Criteria certification that excludes low-security ciphers.

fips-and-cc-ndcpp-high-security

A set of ciphers required by both the FIPS certification and the Common Criteria certification that excludes low-security ciphers.

compatible

Example

The following example uses the high-security cipher set:

hostname (config) # aaa authentication saml ssl cipher-list high-security

User role

Admin

Command mode

Config

Supported appliances

  • Central Management System: Release 8.7.1

  • Network Security: Release 8.3.2

  • File Protect: Release 8.3.0