PAN-OS 10.0 Decryption Cipher Suites
List of cipher suites supported for IPSec on firewalls
running PAN-OS® 10.0 in normal operation mode.
The following table lists cipher suites for decryption
that are supported on firewalls running a PAN-OS® 10.0 release in
normal (non-FIPS-CC) operational mode.
If your firewall is running in FIPS-CC mode, see the
list of PAN-OS
10.0 Cipher Suites Supported in FIPS-CC Mode.
Feature or Function | Ciphers Supported in PAN-OS 10.0 Releases |
---|---|
SSH Decryption (SSHv2 only)—Encryption |
|
SSH Decryption (SSHv2
only)—Message Authentication |
|
SSL/TLS Decryption |
|
SSL/TLS Decryption—NIST-approved
Elliptical Curves |
|
SSL/TLS Decryption—Perfect Forward
Secrecy (PFS) Ciphers If you use the DHE or ECDHE key
exchange algorithms to enable PFS support for SSL decryption, you
can use a hardware security module (HSM) to store the private keys
used for SSL Inbound Inspection. |
|
TLS
1.3 Decryption—Signature Algorithms |
|
Recommended For You
Recommended Videos
Recommended videos not found.