cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
234
Views
0
Helpful
1
Replies

REMOVE 64BIT BLOCK CYPERS

charles cronin
Level 1
Level 1

Does anyone know how to remove the 64bit block cyphers from the MXP VTC systems.

We have to remove the from the /etc/ssh/sshd_config file ??

Also after doing that will I still be able to remote (SSH) into the system ?   Telnet is a no go.

1 Reply 1

Elias Sevilla Duarte
Cisco Employee
Cisco Employee

It is my understanding that if the mentioned file is removed, the system will re-add it back, so removing it would not be the best way to go.

The ciphers cannot be added or removed manually, as it would require root permissions, which are not available in MXP endpoints.

There is a bug for MXP endpoints for old versions, and it basically resolves a vulnerability for RCA ciphers, that includes all RC4 64 bit ciphers.

https://bst.cloudapps.cisco.com/bugsearch/bug/CSCux88407/?reffering_site=dumpcr

I hope this helps.