Displays the list of inbound ciphers and outbound ciphers that has been applied to comply with FIPS 140-2 and CC-NDPP requirements.
For details about FIPS 140-2 and CC-NDPP compliance, see the FIPS and Common Criteria Addendum.
Syntax
show crypto cipher-list <cipher_list>
Parameters
<cipher_list>
The cipher list used for compliance:
fips
Compliant with FIPS
cc-ndcpp
Compliant with CC-NDPP
fips-and-cc-ndcpp
Compliant with both FIPS and CC-NDPP
fips-high-security
Compliant with FIPS and excludes low-security ciphers
cc-ndcpp-high-security
Compliant with CC-NDPP and excludes low-security ciphers
fips-and-cc-ndcpp-high-security
Compliant with both FIPS and CC-NDPP and excludes low-security ciphers
compatible
Improved security while maintaining backward compatibility
custom
A custom list
Example
The following example displays the list of inbound SSL ciphers and outbound SSL ciphers.
hostname # show crypto cipher-list fips-high-security Custom cipher list: fips-high-security cipher-suite AES_128_CTR AES_256_CTR AES_128_GCM AES_256_GCM
User role
Admin, Operator, Monitor
Command mode
Enable
Supported appliances
This command is supported on the following appliances running the specified releases or later:
Malware Analysis: Release 9.0
Central Management System: Release 9.0
Email Security — Server: Release 9.0
File Protect: Release 9.0
Network Security: Release 9.0
Intelligent Virtual Execution - Server: Release 9.0