Fortigate - HTTPS/SSH admin access strong ciphers

Warning! Audit Deprecated

This audit has been deprecated and will be removed in a future update.

View Next Audit Version

Information

Only allow strong ciphers (AES, 3DES) and digest (SHA1) for HTTPS/SSH admin access.

Solution

Issue the following command to enable strong-crypto.

config system global
set strong-crypto enable
end

Item Details

Category: ACCESS CONTROL

References: 800-53|AC-17(2)

Plugin: FortiGate

Control ID: 6631fec5587cdc219dc4550fd185c2c78e6e49371c4ed21bb23b5d131ba1d035