New and Changed Feature Information

This table summarizes the new and changed feature information for the System Security Configuration Guide for Cisco NCS 5500 Series Routers, and tells you where they are documented.

System Security Features Added or Modified in IOS XR Release 7.0.x

Feature Description Changed in Release Where Documented

SSH Configuration Option to Restrict Cipher Public Key and HMAC Algorithm

This feature was introduced.

Release 7.0.1

SSH Configuration Option to Restrict Cipher Public Key and HMAC Algorithm

Automatic Generation of SSH Host-Key Pairs

This feature was introduced.

Release 7.0.1

Automatic Generation of SSH Host-Key Pairs

SSH and SFTP in Baseline Cisco IOS XR Software Image

This feature was introduced.

Release 7.0.1

SSH and SFTP in Baseline Cisco IOS XR Software Image

Type 8, Type 9 and Type 10 password support

This feature was introduced.

Release 7.0.1

Type 8 and Type 9 Passwords

Type 10 Password

Configuring CBC Mode Ciphers

This feature was introduced to enable CBC mode ciphers 3DES-CBC and AES-CBC for SSHv2 server and client connections.

Release 7.0.1

Configuring CBC Mode Ciphers

Type 6 Password Encryption

This feature was introduced for authenticating BGP, IP SLA, IS-IS, OSPF, and RSVP sessions with Type 6 password encryption, in addition to MACsec sessions.

Release 7.0.1

Type 6 Password Encryption

Integrating Cisco IOS XR and Crosswork Trust Insights This feature was introduced.

Release 7.0.1

Integrating Cisco IOS XR and Crosswork Trust Insights