Commands Disabled in FIPS Mode

The device in FIPS mode does not support the following commands:
  • telnet server
  • ip ssh key-authentication no
  • ip ssh scp disable
  • web-management http
  • ip ssh encryption aes192-cbc
  • ip ssh encryption aes192-ctr
  • ip ssh encryption 3des-cbc

A device in FIPS mode does not support TFTP commands, including copy tftp flash ip-address.

The following JITC command is not supported because JITC is disabled by default in FIPS mode:

  • jitc enable