How to manage deprecated SSH settings on the SSL Visibility Appliance
search cancel

How to manage deprecated SSH settings on the SSL Visibility Appliance

book

Article ID: 272405

calendar_today

Updated On:

Products

SSL Visibility Appliance Software

Issue/Introduction

As security ciphers come and go, older ciphers may become deprecated.  This may trigger in a security scan of the SSL Visibility Appliances.  There is also a risk that these deprecated ciphers may put an appliance out of compliance.

Environment

Release : 4.5.11.2 + and 5.4.x +

Resolution

SSL Visibility has added the capability to add and remove ciphers, as well as other commands via SSH.  In order to access these commands SSH into the appliance.  After that enter the enable command and the password.  From there the command ssh-console will be available.

Here are the commands relevant to ciphers.

sslv_4_5_11_1# ssh-console ciphers ?
Possible completions:
  add       Add ciphers to the cipher list
  demote    Demote a cipher within the cipher list
  promote   Promote a cipher within the cipher list
  remove    Remove ciphers from the cipher list
  reset     Reset the cipher list to the default value
  set       Set the list of ciphers to be used
  view      View the cipher list