SSH cipher suites

Prev Next

Trellix supports two cipher-level arguments; compliant-security and high-security. On initiation of a connection, the high-security ciphers are offered first, which ensures that if supported, a high-security cipher will be negotiated in practice. If high-security isn’t supported, a compliant-security cipher will be negotiated.

Note

Compliant-security ciphers and high-security ciphers are approved and certified by The National Institute of Standards and Technology (NIST) and National Information Assurance Partnership (NIAP).

For supported cipher suites over an unsecured network, see the following tables.