Created on
04-13-2022
12:55 PM
Edited on
07-23-2025
07:31 AM
By
Stephen_G
| Description | This article describes how to enable individual ciphers in the SSH administrative access protocol in FortiProxy. |
| Scope | FortiProxy. |
| Solution |
If a vulnerability scanner tool reports weak algorithms are enabled in FortiProxy, specific algorithms can be allowed by following commands. config system global set ssh-enc-algo {chacha20-poly1305@openssh.com aes128-ctr aes192-ctr aes256-ctr arcfour256 arcfour128 aes128-cbc 3des-cbc blowfish-cbc cast128-cbc aes192-cbc aes256-cbc arcfour rijndael-cbc@lysator.liu.se aes128-gcm@openssh.com aes256-gcm@openssh.com}
Note: Starting from v7.4.4, the ssh-xxx-algo commands have been moved from 'config system global setting' to 'config system ssh-config setting'. |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2026 Fortinet, Inc. All Rights Reserved.