Commands Disabled in FIPS Mode
The device in FIPS mode does not support the following commands:
enable password-displayenable strict-password-enforcementNote: Strict password enforcement is enabled by default when the device is in FIPS mode and it cannot be disabled. The password must be at least eight characters long.web-management allow-no-passwordtelnet serverip ssh scp disableip ssh key-authentication noip ssh permit-empty-passwd yesweb-management httpip ssh encryption disable-aes-cbc
A device in FIPS mode does not support TFTP commands, including:
copy tftp flashipboot system tftpip fileip ssh pub-key-file tftpip {file | pubkey}ip ssl certificate-data-file tftpip fileip ssl private-key file tftptftp ip file
The following JITC command is not supported because JITC is disabled by default in FIPS mode: