•
aes256-cbc
•
aes128-ctr
•
aes192-ctr
•
aes256-ctr
mac
hmac-
algorithm
Enter the keyword
mac
then a space-delimited list of hash
message authentication code (HMAC) algorithms supported
by the SSH server for keying hashing for the message
authentication.
The following HMAC algorithms are available:
•
hmac-sha1
•
hmac-sha1-96
•
hmac-sha2-256
•
hmac-sha2-256-96
When FIPS is enabled, the default HMAC algorithm is
hmac-
sha1-96
.
When FIPS is not enabled, the default HMAC algorithms are
the following:
•
hmac-md5
•
hmac-md5-96
•
hmac-sha1
•
hmac-sha1-96
•
hmac-sha2-256
•
hmac-sha2-256-96
kex
key-
exchange-
algorithm
Enter the keyword
kex
and then a space-delimited list of key
exchange algorithms supported by the SSH server.
The following key exchange algorithms are available:
•
diffie-hellman-group-exchange-sha1
•
diffie-hellman-group1-sha1
•
diffie-hellman-group14-sha1
When FIPS is enabled, the default key-exchange-algorithm is
diffie-hellman-group14-sha1
.
When FIPS is not enabled, the default key-exchange-
algorithms are the following:
•
diffie-hellman-group-exchange-sha1
•
diffie-hellman-group1-sha1,
1666
Security