SV-220504r604141_rule
V-220504
SRG-APP-000412-NDM-000331
CISC-ND-001210
CAT I
10
Enable fips mode via the command fips mode enable.
Verify that FIPS mode is enabled as shown in the example below:
fips mode enable
Note: Cisco NX-OS software supports only SSH version 2 (SSHv2). Beginning in Cisco NX-OS Release 5.1, SSH runs in FIPS mode. Source: Cisco Nexus 7000 Series NX-OS Security Configuration Guide, Release 6.x
If the switch is not configured to implement cryptographic mechanisms to protect the confidentiality of remote maintenance sessions, this is a finding.
V-220504
False
CISC-ND-001210
Verify that FIPS mode is enabled as shown in the example below:
fips mode enable
Note: Cisco NX-OS software supports only SSH version 2 (SSHv2). Beginning in Cisco NX-OS Release 5.1, SSH runs in FIPS mode. Source: Cisco Nexus 7000 Series NX-OS Security Configuration Guide, Release 6.x
If the switch is not configured to implement cryptographic mechanisms to protect the confidentiality of remote maintenance sessions, this is a finding.
M
4066