Management Access Policy - HTTPS - Cipher Configuration

Information

HTTP SSL Cipher Configuration. The list includes SSL Ciphers, and whether the Cipher is enabled or disabled.

NOTE: Nessus has not performed this check. Please review the benchmark to ensure target compliance.

Solution

Log into the Cisco APIC Web Console:
Navigate to 'Fabric' -> 'Fabric Policies'.

Click 'Fabric Security'.

Expand 'Policies'

Expand 'Pod'

Expand 'Management Access'

For each 'Management Access' policy, in the 'HTTPS' section, ensure only 'SSL Ciphers' appropriate for your environment are enabled.