- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
06-23-2025 11:08 AM
So I can't find any real information about this, and Cisco's guide for NTP on NEXUS only uses md5. Does the Nexus OS support sha256 for NTP?
Solved! Go to Solution.
- Labels:
-
Security Management
Accepted Solutions
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
06-23-2025 12:45 PM
Hello @hadornj,
so far Cisco introduced SHA256 for NTP authentication only for IOS-XE with 17.6 while this is not supported on Nexus as of yet.
However, since NX-OS Release 10.3(3)F, NTP security is enhanced with the AES128CMAC authentication mechanism along with Type-6 encryption support for authentication keys which is in line with the RFC 8573 standards.
For configuration guidelines and limitations please refer to the NTP section of the Cisco Nexus 9000 Series NX-OS System Management Configuration Guide, Release 10.4(x).
HTH!
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
06-23-2025 12:45 PM
Hello @hadornj,
so far Cisco introduced SHA256 for NTP authentication only for IOS-XE with 17.6 while this is not supported on Nexus as of yet.
However, since NX-OS Release 10.3(3)F, NTP security is enhanced with the AES128CMAC authentication mechanism along with Type-6 encryption support for authentication keys which is in line with the RFC 8573 standards.
For configuration guidelines and limitations please refer to the NTP section of the Cisco Nexus 9000 Series NX-OS System Management Configuration Guide, Release 10.4(x).
HTH!
