enable fips-mode
To enable FIPS (Federal Information Processing Standard) mode, use the
enable fips-mode
command.
enable fips-mode
Syntax Description
This command has no arguments or keywords.
Command Modes
Security mode
Command History
Modification
Release
Command added.
1.1(1)
Usage Guidelines
Connectivity to one or more services may be denied when this command is committed. Also, a reboot of the
system will be required.
Prior to FXOS release 2.0.1, the existing SSH host key created during first-time setup of a device was
hard-coded to 1024 bits. To comply with FIPS and Common Criteria certification requirements, you must
destroy this old host key and generate a new one (see
for information about
creating and deleting SSH host keys). If you do not perform these additional steps, you will not be able to
connect to the Supervisor using SSH after the device has rebooted with Common Criteria mode enabled. If
you performed initial setup using FXOS 2.0.1 or later, you do not have to generate a new host key.
Important
Example
This example shows how to enter security mode and enable FIPS mode:
FP9300-A #
scope security
FP9300-A /security #
enable fips-mode
Warning: Connectivity to one or more services may be denied when committed.
Please consult the product's FIPS Security Policy documentation.
WARNING: A reboot of the system is required in order for the system to be operating in a
FIPS approved mode.
FP9300-A /security* #
Related Commands
Description
Command
Disables FIPS mode.
disable fips-mode
Shows current FIPS mode administrative and operational states.
show fips-mode
Cisco Firepower 4100/9300 FXOS Command Reference
96
A – R Commands
enable fips-mode
Содержание Firepower 4100 Series
Страница 4: ...Cisco Firepower 4100 9300 FXOS Command Reference 2 About the FXOS CLI Command Reference Guide ...
Страница 25: ...P A R T I A R Commands A C Commands on page 25 D R Commands on page 81 ...
Страница 26: ......
Страница 122: ...Cisco Firepower 4100 9300 FXOS Command Reference 120 A R Commands return ...
Страница 123: ...P A R T II S Commands scope Commands on page 123 set Commands on page 157 sh Commands on page 235 ...
Страница 124: ......
Страница 236: ...Cisco Firepower 4100 9300 FXOS Command Reference 234 S Commands set vlan ...
Страница 379: ...P A R T III T W Commands T W Commands on page 379 ...
Страница 380: ......
Страница 390: ...Cisco Firepower 4100 9300 FXOS Command Reference 388 T W Commands where ...
Страница 391: ...P A R T IV connect shell Commands connect shell Commands on page 391 ...
Страница 392: ......
Страница 420: ...Cisco Firepower 4100 9300 FXOS Command Reference 418 connect shell Commands connect module Command List ...