02-14-2017 06:55 AM - edited 03-08-2019 09:19 AM
Is Cisco going to provide SHA1 encryption to the NTP authentication parameter? This is now required in the DOD realm.
09-17-2023 07:28 PM - edited 09-17-2023 07:35 PM
I also work for DoD. We had a network penetration team test our network. They were able to decipher our NTP keys stored hash. NTP keys are stored with a type 7 algorithm which is MD5. The stored keys needs to be a type 6, 8 or 9 hash which is SHA2 or AES. I have been unable to find solution to change to type 6, 8 or 9 hash. I have been able to update all other passwords and shared keys hashes in the configuration to type 6, 8 or 9. It just the NTP keys I do not have a solution.
07-01-2024 01:18 PM
Is there a repository or an area where we can go to see what options are available on different 17.x.x IOS's? I'm just looking for an easier way to see when the 512 hashing option will be available without having to actually install one or several other IOS's just to see if what's available under the NTP options. We are also hitting a "STIG" wall with this. Thanks in advance.
08-12-2024 11:42 AM
Try the Cisco Feature Navigator: https://cfnng.cisco.com/
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide