By default, NetApp keep enabled SSH ciphers which are obsoletes (which should not be used at least). The following procedure has been realized on an AFF-A300
The ciphers I’m talking about are the cbc ones (aes256-cbc, aes192-cbc, aes128-cbc, 3des-cbc) and here is how to proceed :
First of all, connect to your NetApp via SSH, then you will have to set the advanced privilege mode
data:image/s3,"s3://crabby-images/13948/13948b976ae5c9fc295cd6fd24113af45e474f19" alt=""
And finish by removing all the cipers you want to disable with the command « security ssh remove -ciphers xxxx »
Then you can check the ciphers enabled with the command « security ssh show » :
data:image/s3,"s3://crabby-images/0bb87/0bb87b14d0af320fc58cfd86fefe947f71e8f59f" alt=""