Use sha-256, sha-384, sha-512 only for signature algorithms for certificates.
Syntax
[no] crypto certificate secure-hashes-only [ecdsa | rsa]
Parameters
no
Use the no form of this command to clear the restriction on signature algorithms.
ecdsa
Use sha-256, sha-384, sha-512 only for signature algorithms for ECDSA certificates.
rsa
Use sha-256, sha-384, sha-512 only for signature algorithms for RSA certificates.
Example
The following example specifies restrictions on RSA certificates:.
hostname (config) # crypto certificate secure-hashes-only rsa
User role
Admin
Command mode
Config
Supported appliances
This command is supported on the following appliances running the specified releases or later:
Central Management System: Before Release 7.6
Malware Analysis: Before Release 7.6
Email Security — Server: Before Release 7.6
File Protect: Before Release 7.6
Network Security: Before Release 7.6
Endpoint Security (HX): Before Release 3.0