Users Guide

Version Description
8.3.16.1 Introduced on the MXL 10/40GbE Switch IO Module.
Usage Information This command species the maximum number of attempts to authenticate a user on an SSH connection with the
remote host for password authentication. SSH disconnects when the number of password failures exceeds
authentication-retries.
ip ssh cipher
Congure the list of ciphers supported on both SSH client and SCP.
Syntax
ip ssh cipher cipher-list
Parameters
cipher cipher-list Enter the keyword cipher and then a space-delimited list of ciphers that the SSH client
supports. The following ciphers are available.
aes256-ctr
aes256-cbc
aes192-ctr
aes192-cbc
aes128-ctr
aes128-cbc
3des-cbc
Defaults The default list of ciphers is in the order as shown below:
aes256-ctr
aes256-cbc
aes192-ctr
aes192-cbc
aes128-ctr
aes128-cbc
3des-cbc
Command Modes CONFIGURATION
Command History
This guide is platform-specic. For command information about other platforms, see the relevant Dell Networking
OS Command Line Reference Guide.
Version Description
9.10(0.0) Introduced on the S6100–ON, S6000, S6000–ON, S5000, S4810, S4820T, S3048–ON,
S4048–ON, MXL, C9010, S3100 series, and Z9100-ON.
Usage Information
You can select one or more ciphers from the list.
The default list of supported ciphers is same irrespective of whether FIPS mode is enabled or disabled.
Client-supported cipher list gets preference over the server-supported cipher list in selecting the cipher for the
SSH session.
When the cipher (-c) option is used with the SSH CLI, it overrides the congured or default cipher list.
1186 Security