Fabric Security - Policy - FIPS Mode

Information

Note: Anytime you change the mode, you must reboot to complete the configuration.

When performing a Cisco APIC software downgrade, you must disable FIPS first.

The FIPS mode can be one of the following:
- Enable
- Disable

The default is Disable.

NOTE: Nessus has provided the target output to assist in reviewing the benchmark to ensure target compliance.

Solution

Log into the Cisco APIC Web Console:
Navigate to 'System' -> 'System Settings'.

Click 'Fabric Security'.

Click the 'Policy' tab.

Set 'FIPS Mode' to an appropriate value for your environment.

Item Details

Audit Name: Tenable Cisco ACI

Category: SYSTEM AND COMMUNICATIONS PROTECTION

References: 800-53|SC-13

Plugin: Cisco_ACI

Control ID: fab1d4105bb9e0da91703d6323e832c3dda125b4ec94936cfa3a6cf89683410e