EasyManuals Logo

HPE MSR3000 User Manual

HPE MSR3000
371 pages
To Next Page IconTo Next Page
To Next Page IconTo Next Page
To Previous Page IconTo Previous Page
To Previous Page IconTo Previous Page
Page #275 background imageLoading...
Page #275 background image
169
ï‚¡ The des keyword was changed to des-cbc.
The default settings for the following algorithms were changed:
•
For the preferred client-to-server encryption algorithm prefer-ctos-cipher:
ï‚¡ Before modification: The default is aes128.
ï‚¡ After modification: The default is aes128-ctr.
•
For the preferred client-to-server HMAC algorithm prefer-ctos-hmac:
ï‚¡ Before modification: The default is sha1.
ï‚¡ After modification: The default is sha2-256.
•
For the preferred key exchange algorithm prefer-kex:
ï‚¡ Before modification: The default is dh-group-exchange in non-FIPS mode and is
dh-group14 in FIPS mode.
ï‚¡ After modification: The default is ecdh-sha2-nistp256 in both non-FIPS mode and FIPS
mode.
•
For the preferred server-to-client encryption algorithm prefer-stoc-cipher:
ï‚¡ Before modification: The default is aes128.
ï‚¡ After modification: The default is aes128-ctr.
•
For the preferred server-to-client HMAC algorithm prefer-stoc-hmac:
ï‚¡ Before modification: The default is sha1.
ï‚¡ After modification: The default is sha2-256.
Modified command: scp ipv6
Old syntax
In non-FIPS mode:
scp ipv6 server [ port-number ] [ vpn-instance vpn-instance-name ] [ -i interface-type
interface-number ] { put | get } source-file-name [ destination-file-name ] [ identity-key { dsa | rsa }
| prefer-compress zlib | prefer-ctos-cipher { 3des | aes128 | aes256 | des } | prefer-ctos-hmac
{ md5 | md5-96 | sha1 | sha1-96 } | prefer-kex { dh-group-exchange | dh-group1 | dh-group14 } |
prefer-stoc-cipher { 3des | aes128 | aes256 | des } | prefer-stoc-hmac { md5 | md5-96 | sha1 |
sha1-96 } ] * [ publickey keyname | source { interface interface-type interface-number | ipv6
ipv6-address } ] *
In FIPS mode:
scp ipv6 server [ port-number ] [ vpn-instance vpn-instance-name ] [ -i interface-type
interface-number ] { put | get } source-file-name [ destination-file-name ] [ identity-key rsa |
prefer-compress zlib | prefer-ctos-cipher { aes128 | aes256 } | prefer-ctos-hmac { sha1 |
sha1-96 } | prefer-kex dh-group14 | prefer-stoc-cipher { aes128 | aes256 } | prefer-stoc-hmac

Table of Contents

Questions and Answers:

Question and Answer IconNeed help?

Do you have a question about the HPE MSR3000 and is the answer not in the manual?

HPE MSR3000 Specifications

General IconGeneral
BrandHPE
ModelMSR3000
CategoryNetwork Router
LanguageEnglish

Related product manuals