EasyManuals Logo
Home>Cisco>Firewall>Firepower 4110

Cisco Firepower 4110 User Manual

Cisco Firepower 4110
72 pages
To Next Page IconTo Next Page
To Next Page IconTo Next Page
To Previous Page IconTo Previous Page
To Previous Page IconTo Previous Page
Page #24 background imageLoading...
Page #24 background image
Cisco Preparative Procedures & Operational User Guide
© 2016 Cisco Systems, Inc. All rights reserved.
4.3 Enable FIPS and CC Mode
The system by default only supports SSH and HTTPS security protocols for management. Telnet and
HTTP are not supported for management and should not be enabled. SNMPv3 is supported but is not
permitted for managementonly for sending SNMP traps. The system is required to support only the
cipher suites, version, and protocols claimed in the Security Target. HTTPS, TLS, and SSH connection
settings are configured automatically when CC and FIPS mode are enabled.
4.3.1 Enable FIPS Mode
1) From the FXOS CLI, enter the security mode:
scope system
scope security
2) Enable FIPS mode:
enable fips-mode
3) Commit the configuration:
commit-buffer
4) Reboot the system:
connect local-mgmt
reboot
IMPORTANT! Prior to FXOS release 2.0.1, the existing SSH host key created during first-
time setup of a device was set to 1024 bits. To comply with FIPS and Common Criteria
certification requirements, you must destroy this old host key and generate a new one using
the procedure detailed in Generate the SSH Host Key (see below). If you performed first-
time setup using FXOS 2.0.1 or later, you do not have to generate a new host key.
4.3.2 Enable Common Criteria (CC) Mode
1) From the FXOS CLI, enter the security mode:
scope system
scope security
2) Enable FIPS mode:
enable cc-mode
3) Commit the configuration:
commit-buffer
4) Reboot the system:
connect local-mgmt
reboot

Table of Contents

Other manuals for Cisco Firepower 4110

Questions and Answers:

Question and Answer IconNeed help?

Do you have a question about the Cisco Firepower 4110 and is the answer not in the manual?

Cisco Firepower 4110 Specifications

General IconGeneral
BrandCisco
ModelFirepower 4110
CategoryFirewall
LanguageEnglish

Related product manuals