What SSH algorithm is BMC using?
Applies to
- Baseboard Management Controller (BMC)
- AFF A400
- FAS8700
- FAS8300
- AFF A250
- FAS500f
Answer
Synchronized with ONTAP
For the ciphers, mac-algorithms, and key-exchange-algorithms for the BMC to be synchronized with ONTAP follow the solution in Deprecated SSH Cryptographic Settings in Service Processor: key exchange diffie-hellman-group1-sha1.
Previous BMC Firmware and ONTAP Version
The BMC of the model in the Applies To section uses the following defaults for SSH connections:
- ciphers:
aes128-ctr
aes192-ctr
aes256-ctr
- mac-algorithms:
hmac-sha2-256
hmac-sha2-512
- key-exchange-algorithms:
diffie-hellman-group-exchange-sha256
ecdh-sha2-nistp256
ecdh-sha2-nistp384
ecdh-sha2-nistp521