Sets the list of cipher suites to be used by the Trellix appliance to communicate with the SAML IdP over SSL and TLS.
Syntax
[no] aaa authentication saml ssl cipher-list { original | fips | cc-ndcpp |fips-and-cc-ndcpp | fips-high-security | cc-ndcpp-high-security | fips-and-cc-ndcpp-high-security | compatible }
Parameters
no
Use the no form of this command to use to the default (compatible) cipher set.
fips
A set of ciphers required by FIPS certification.
cc-ndcpp
A set of ciphers required by the Common Criteria certification.
fips-and-cc-ndcpp
A set of ciphers required by both the FIPS certification and the Common Criteria certification.
fips-high-security
A set of ciphers required by FIPS certification that excludes low-security ciphers.
cc-ndcpp-high-security
A set of ciphers required by the Common Criteria certification that excludes low-security ciphers.
fips-and-cc-ndcpp-high-security
A set of ciphers required by both the FIPS certification and the Common Criteria certification that excludes low-security ciphers.
compatible
Example
The following example uses the high-security cipher set:
hostname (config) # aaa authentication saml ssl cipher-list high-security
User role
Admin
Command mode
Config
Supported appliances
Central Management System: Release 8.7.1
Network Security: Release 8.3.2
File Protect: Release 8.3.0