Exiting FIPS mode

About exiting FIPS mode

After you disable FIPS mode and reboot the device, the device operates in non-FIPS mode.

For the device to exit FIPS mode, you can use one of the following reboot methods:

Using the automatic reboot method to exit FIPS mode

  1. Enter system view.

    system-view

  2. Disable FIPS mode.

    undo fips mode enable

    By default, the FIPS mode is disabled.

  3. Select the automatic reboot method.

Using the manual reboot method to exit FIPS mode

  1. Enter system view.

    system-view

  2. Disable FIPS mode.

    undo fips mode enable

    By default, the FIPS mode is disabled.

  3. Select the manual reboot method.

  4. Configure login authentication settings.

    • If you logged in to the device through SSH, perform the following tasks without disconnecting the current user line:

      • Set the authentication mode to scheme for VTY lines.

      • Specify the username and password. If you do not specify the username or password, the device uses the current username and password.

    • If you logged in to the device through a console port, configure login authentication settings for the current type of user lines as described in the following table:

    Current login method

    Login authentication requirements

    Scheme

    Set the authentication to scheme and specify the username and password. If you do not specify the username or password, the device uses the current username and password.

    Password

    Set the authentication to password and specify the password. If you do not specify the password, the device uses the current password.

    None

    Set the authentication to none.

  5. Save the running configuration and specify the file as the startup configuration file.

  6. Delete the .mdb startup configuration file.

  7. Reboot the device.