Guest

Preview Tool

Cisco Bug: CSCvv89173 - FDM - SSL Cipher objects are allowed to be created without empty protocol and cipher list

Last Modified

Oct 14, 2020

Products (1)

  • Cisco Firepower NGFW

Known Affected Releases

6.5.0 6.6.0 6.7.0

Description (partial)

Symptom:
Cipher objecs with null protoocl version and cipher lists gets created via Firepower Device Manager API  /object/sslciphers/{objId}

Conditions:
PUT/POST on  /object/sslciphers/{objId} is issued with empty protocolVesons and cipherSuites list as

 {
      "version": "dodzzsp5pcqiu",
      "name": "MyCipher",
      "protocolVersions": [
        
      ],
      "securityLevel": "CUSTOM",
      "isSystemDefined": false,
     
      "cipherSuites": [
       
      ],
      "description": null,
      "id": "ceccb6ff-0156-11eb-a830-950b523e89de",
      "type": "sslcipher"
    }
Bug details contain sensitive information and therefore require a Cisco.com account to be viewed.

Bug Details Include

  • Full Description (including symptoms, conditions and workarounds)
  • Status
  • Severity
  • Known Fixed Releases
  • Related Community Discussions
  • Number of Related Support Cases
Bug information is viewable for customers and partners who have a service contract. Registered users can view up to 200 bugs per month without a service contract.