show crypto cipher-list <cipher_list>

Prev Next

Displays the list of inbound ciphers and outbound ciphers that has been applied to comply with FIPS 140-2 and CC-NDPP requirements.

For details about FIPS 140-2 and CC-NDPP compliance, see the FIPS and Common Criteria Addendum.

Syntax

show crypto cipher-list <cipher_list>

Parameters

<cipher_list>

The cipher list used for compliance:

fips

Compliant with FIPS

cc-ndcpp

Compliant with CC-NDPP

fips-and-cc-ndcpp

Compliant with both FIPS and CC-NDPP

fips-high-security

Compliant with FIPS and excludes low-security ciphers

cc-ndcpp-high-security

Compliant with CC-NDPP and excludes low-security ciphers

fips-and-cc-ndcpp-high-security

Compliant with both FIPS and CC-NDPP and excludes low-security ciphers

compatible

Improved security while maintaining backward compatibility

custom

A custom list

Example

The following example displays the list of inbound SSL ciphers and outbound SSL ciphers.

hostname # show crypto cipher-list fips-high-security

Custom cipher list:
   fips-high-security cipher-suite AES_128_CTR AES_256_CTR AES_128_GCM AES_256_GCM

User role

Admin, Operator, Monitor

Command mode

Enable

Supported appliances

This command is supported on the following appliances running the specified releases or later:

  • Malware Analysis: Release 9.0

  • Central Management System: Release 9.0

  • Email Security — Server: Release 9.0

  • File Protect: Release 9.0

  • Network Security: Release 9.0

  • Intelligent Virtual Execution - Server: Release 9.0