Question
Disable SSH Weak Ciphers
We are using FortiGate and we noticed that the SSH server is configured to use the weak encryption algorithms (arcfour, arcfour128 & arcfour256, cbc) and mac algorithms (hmac-sha1 and hmac-md5).
My question is:
How to disable CBC mode ciphers and use CTR mode ciphers?
How to disable 96-bit HMAC Algorithms?
How to disable MD5-based HMAC Algorithms?
Thanks.
