Specifies a predefined list of cipher suites used to encrypt TLS communication with the DTI network.
Syntax
fenet ssl cipher-list <name>
no fenet ssl cipher-list
Parameters
no
Use the no form of this command to reset the cipher list to the default setting (compatible).
name
The name of the list:
fips—Compliant with FIPS.cc-ndcpp—Compliant with CC-NDcPP.fips-and-cc-ndcpp—Compliant with both FIPS and CC-NDcPP.high-security—High security (may include ciphers that are not compliant with FIPS or CC-NDcPP).compatible—Improved security while maintaining backward compatibility.
Example
The following example configures the cipher suite list that is compliant with FIPS.
hostname (admin) # fenet ssl cipher-list fips
User role
Admin
Supported appliances
This command is supported on the following appliances running the specified releases or later:
Malware Analysis: Release 7.7.0
Central Management System: Release 7.6.0
Email Security — Server: Release 7.6.0
File Protect: Release 7.7.0
Endpoint Security (HX): Release 3.0.0
Network Security: Release 7.6.0
Intelligent Virtual Execution - Server: Release 7.9.0