cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1475
Views
5
Helpful
6
Replies

SSL Ciphers List

jefmartins1208
Level 1
Level 1

Hello,

 

I bought an ASA5506-X, and I am not able to access ASDM.

SSL Error: ERR_SSL_VERSION_OR_CIPHER_MISMATCH

 

I use command

 

show ssl ciphers all

 

and show only those two.

 

DES-CBC-SHA, NULL-SHA

 

How to add others?

6 Replies 6

slicerpro
Level 1
Level 1

You are lacking all the cipher suites. fix this by the command:

 

 "ssl encryption 3des-sha1 aes128-sha1 aes256-sha1"

 

..without the quote marks of course.

 

It does not work, command is deprecated.

Wasn't sure which version you were on, but beginning 9.3(2), 'ssl encryption' command was deprecated, try 'ssl cipher' instead.

It is in version 9.8. I tried to use the ssl cipher and put a different option from the previous ones it does not support.

What is the output of "show run all ssl" ?

Marvin Rhoads
Hall of Fame
Hall of Fame

It most likely wasn't ordered with the (free) 3DES-AES license. (i.e., the ordering SKU ended with K8 instead of K9)

 

Check via "show activation-key".

 

If indeed you don't have that license, go to software.cisco.com and get one.

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community:

Review Cisco Networking products for a $25 gift card