Security Policy Configuration Command Set; Crypto - Cisco CSS11501S-C-K9 Configuration Manual

Secure content accelerator
Table of Contents
Appendix C
Command Summary

Security Policy Configuration Command Set

crypto

Syntax Description
Cryptographic Scheme
ARC4-MD5
ARC4-SHA
DES-CBC3-MD5
78-13124-06
Use Security Policy Configuration commands to set up and manage security policies.
Enter Security Policy Configuration mode by using the enable command in
Non-Privileged mode, the configure command in Privileged Mode, the ssl command
in Configuration mode, and secpolicy command in SSL Configuration mode. The
prompt changes to
>
Creates a customized security policy for the current SSL device.
crypto <fips | strong | weak | all | ARC4-MD5 | ARC4-SHA |
DES-CBC3-MD5 | DES-CBC3-SHA | DES-CBC-MD5 |
DES-CBC-SHA | EXP-ARC2-MD5 | EXP-ARC4-MD5 |
EXP-DES-CBC-SHA | EXP1024-ARC2-CBC-MD5 |
EXP1024-ARC4-MD5 | EXP1024-ARC4-SHA |
EXP1024-DES-CBC-SHA | NULL-MD5 | NULL-SHA >
no crypto < ARC4-MD5 | ARC4-SHA | DES-CBC3-MD5 |
DES-CBC3-SHA | DES-CBC-MD5 | DES-CBC-SHA |
EXP-ARC2-MD5 | EXP-ARC4-MD5 | EXP-DES-CBC-SHA |
EXP1024-ARC2-CBC-MD5 | EXP1024-ARC4-MD5 |
EXP1024-ARC4-SHA | EXP1024-DES-CBC-SHA | NULL-MD5 |
NULL-SHA >
The following table shows the characteristics of each crytptographic algorithm.
Encryption
1
ARC4
(128)
1
ARC4
(128)
3DES (168)
Cisco 11000 Series Secure Content Accelerator Configuration Guide
Message
Key
Authentication
Exchange
MD5
RSA (1024)
SHA1
RSA (1024)
MD5
RSA (1024)
Configuration Command Set
.
Security
Policy
Assignments
strong, default, all
strong, default, all
strong, all
C-161
Table of Contents
loading

This manual is also suitable for:

Css-11154-ac11000 series

Table of Contents