fenet ssl cipher-list <name>

Prev Next

Specifies a predefined list of cipher suites used to encrypt TLS communication with the DTI network.

Syntax

fenet ssl cipher-list <name>

no fenet ssl cipher-list

Parameters

no

Use the no form of this command to reset the cipher list to the default setting (compatible).

name

The name of the list:

  • fips—Compliant with FIPS.

  • cc-ndcpp—Compliant with CC-NDcPP.

  • fips-and-cc-ndcpp—Compliant with both FIPS and CC-NDcPP.

  • high-security—High security (may include ciphers that are not compliant with FIPS or CC-NDcPP).

  • compatible—Improved security while maintaining backward compatibility.

Example

The following example configures the cipher suite list that is compliant with FIPS.

hostname (admin) # fenet ssl cipher-list fips

User role

Admin

Supported appliances

This command is supported on the following appliances running the specified releases or later:

  • Malware Analysis: Release 7.7.0

  • Central Management System: Release 7.6.0

  • Email Security — Server: Release 7.6.0

  • File Protect: Release 7.7.0

  • Endpoint Security (HX): Release 3.0.0

  • Network Security: Release 7.6.0

  • Intelligent Virtual Execution - Server: Release 7.9.0