My Oracle Support Banner

Missing New Key Exchange Algorithm In SFTP Remote Target ecdh-sha2-nistp256 ecdh-sha2-nistp521 ecdh-sha2-nistp384 In MFT Security Settings (Doc ID 2994101.1)

Last updated on FEBRUARY 22, 2024

Applies to:

Oracle Managed File Transfer - Version 12.2.1.3.0 and later
Oracle SOA Suite - Version 12.2.1.3.0 and later
Information in this document applies to any platform.

Goal

On : 12.2.1.3.0 version, Core MFT Application Console

Missing New Key Exchange Algorithm In SFTP Remote Target ecdh-sha2-nistp256 ecdh-sha2-nistp521 ecdh-sha2-nistp384 In MFT Security Settings

The Key Exchange Algorithm supported by SFTP server provided within MFT only shows  the default Diffie-Hellman Group 1 (DHG1).

There are new Key Exchange Algorithms  supported by MFT under FIPS KeyEchange mode:
     ecdh-sha2-nistp256 Key Exchange
     ecdh-sha2-nistp521 Key Exchange
     ecdh-sha2-nistp384 Key Exchange

However, MFT does not support the cipher Curve25519-sha256.
 

Solution

To view full details, sign in with your My Oracle Support account.

Don't have a My Oracle Support account? Click to get started!


In this Document
Goal
Solution


My Oracle Support provides customers with access to over a million knowledge articles and a vibrant support community of peers and Oracle experts.