{"description": "Specify the FIPS approved ciphers that are used for data integrity protection by the SSH server.", "type": "string", "operator": "equals", "interactive": false, "options": {"stig": "aes256-ctr,aes192-ctr,aes128-ctr", "stig_extended": "aes256-gcm@openssh.com,aes128-gcm@openssh.com,aes256-ctr,aes128-ctr", "stig_rhel9": "aes256-gcm@openssh.com,aes256-ctr,aes128-gcm@openssh.com,aes128-ctr", "default": "aes128-ctr,aes192-ctr,aes256-ctr,aes128-cbc,3des-cbc,aes192-cbc,aes256-cbc,rijndael-cbc@lysator.liu.se", "cis_rhel8": "-3des-cbc,aes128-cbc,aes192-cbc,aes256-cbc,rijndael-cbc@lysator.liu.se", "cis_rhel9": "-3des-cbc,aes128-cbc,aes192-cbc,aes256-cbc,rijndael-cbc@lysator.liu.se", "cis_sle12": "chacha20-poly1305@openssh.com,aes256-gcm@openssh.com,aes128-gcm@openssh.com,aes256-ctr,aes192-ctr,aes128-ctr", "cis_sle15": "chacha20-poly1305@openssh.com,aes256-gcm@openssh.com,aes128-gcm@openssh.com,aes256-ctr,aes192-ctr,aes128-ctr", "cis_ubuntu": "chacha20-poly1305@openssh.com,aes128-ctr,aes192-ctr,aes256-ctr,aes128-gcm@openssh.com,aes256-gcm@openssh.com", "stig_ubuntu2204": "aes256-ctr,aes256-gcm@openssh.com,aes192-ctr,aes128-ctr,aes128-gcm@openssh.com", "stig_ol9": "aes256-gcm@openssh.com,aes256-ctr,aes128-gcm@openssh.com,aes128-ctr"}, "warnings": [], "title": "SSH Approved ciphers by FIPS", "definition_location": "/aptdata/openscap/scap-security-guide/linux_os/guide/services/ssh/sshd_approved_ciphers.var"}