Help us improve your experience.

Let us know what you think.

Do you have time for a two-minute survey?

 

ciphers

 

Syntax

Hierarchy Level

Release Information

Statement introduced in Junos OS Release 11.2.

Description

Specify the set of ciphers the SSH server can use to perform encryption and decryption functions.

Options

  • 3des-cbc—Triple Data Encryption Standard (DES) in Cipher Block Chaining (CBC) mode.

  • aes128-cbc—128-bit Advanced Encryption Standard (AES) in CBC mode.

  • aes128-ctr—128-bit AES in counter mode.

  • aes128-gcm@openssh.com—128-bit AES in Galois/Counter Mode.

  • aes192-cbc—192-bit AES in CBC mode.

  • aes192-ctr—192-bit AES in counter mode.

  • aes256-cbc—256-bit AES in CBC mode.

  • aes256-ctr—256-bit AES in counter mode.

  • aes256-gcm@openssh.com—256-bit AES in Galois/Counter Mode.

  • arcfour—128-bit RC4-stream cipher in CBC mode.

  • arcfour128—128-bit RC4-stream cipher in CBC mode.

  • arcfour256—256-bit RC4-stream cipher in CBC mode.

  • blowfish-cbc—128-bit blowfish-symmetric block cipher in CBC mode.

  • cast128-cbc—128-bit cast in CBC mode.

  • chacha20-poly1305@openssh.com—ChaCha20 stream cipher and Poly1305 MAC

Note

Ciphers represent a set. To configure SSH ciphers use the set command as shown in the following example:

Required Privilege Level

system—To view this statement in the configuration.

system-control—To add this statement to the configuration.