Please tell us how to encrypt the system admin password.
set strong-crypto disable
admin password Encryption is AES 128? AES 256?
Is it possible to change the encryption algorithm?
Please help me
Nominating a forum post submits a request to create a new Knowledge Article based on the forum post topic. Please ensure your nomination includes a solution within the reply.
https://cookbook.fortinet.com/increasing-the-encryption-level/
--------------------------------------------
If all else fails, use the force !
That cookbook article refers to HTTPS and SSH admin access. It's not about the stored passwords, PSKs, certs...
You cannot influence how passwords are stored in the config or in memory. If we knew the algorithm we could possibly re-engineer the cleartext password from the stored ENC string which would be detrimental in most cases.
I know of no other vendor who would allow this freedom, or document these details, in a security device.
[I know of no other vendor who would allow this freedom, or document these details, in a security device.]
Cisco and Juniper password some types can be backwards engineer. Forcepoint NGFW password are store in a posgresql.db with a salt, and hashed_password.
So I would be " loose to say"; 'no other vendor offers this freedom' ;)
Ken Felix
PCNSE
NSE
StrongSwan
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1713 | |
1093 | |
752 | |
447 | |
231 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.