cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
225
Views
0
Helpful
2
Replies

Deleting MD5 or 96-bit MAC algorthms

John N
Level 1
Level 1

I have been instructed to delete any weak MD5 or 96-bit MAC algorithms on all my switches.  My current setup I have the following:

hmac-sha2-256

hmac-sha2-512 

hmac-sha1

hmac-sha1-96 

 

Out of these which would be considered to be weak MAC algorithm? 

2 Accepted Solutions

Accepted Solutions

Hello,

the SHA1 algorithms are definitely considered weak...

View solution in original post

John N
Level 1
Level 1

So very interesting thing.... If anyone has this vulnerability, I hope this helps...If you delete hmac-sha1-96 the vulnerability goes away.  The hmac-sha1 can stay.   Thanks for the help. 

 

 

View solution in original post

2 Replies 2

Hello,

the SHA1 algorithms are definitely considered weak...

John N
Level 1
Level 1

So very interesting thing.... If anyone has this vulnerability, I hope this helps...If you delete hmac-sha1-96 the vulnerability goes away.  The hmac-sha1 can stay.   Thanks for the help. 

 

 

Review Cisco Networking for a $25 gift card