Excluding RC4 ciphers still shows up in a TLS scan: Difference between revisions
No edit summary |
|||
(2 intermediate revisions by the same user not shown) | |||
Line 18: | Line 18: | ||
==Additional Content== | ==Additional Content== | ||
* For detailed explanations of and Ciphers and Security, please visit the official [[https://wiki.zimbra.com/wiki/Security/Collab/86 | * For detailed explanations of and Ciphers and Security, please visit the official [[https://wiki.zimbra.com/wiki/Security/Collab/86 Security Wiki page]]. | ||
{{Article Footer|Zimbra Collaboration 8.6, 8.5, 8.0|05/28/2015}} | {{Article Footer|Zimbra Collaboration 8.6, 8.5, 8.0|05/28/2015}} | ||
{{NeedSME|SME1|SME2|Copyeditor}} | {{NeedSME|SME1|SME2|Copyeditor}} |
Revision as of 05:45, 30 May 2018
Excluding RC4 ciphers still shows up in a TLS scan
- This article is a Work in Progress, and may be unfinished or missing sections.
Purpose
Excluding RC4 ciphers still shows up in a TLS scan.
Resolution
For RC4, we have to specify the 'SSL' ciphers in the exclude list as well:
zmprov mcf +zimbraSSLExcludeCipherSuites SSL_RSA_WITH_RC4_128_MD5 zmprov mcf +zimbraSSLExcludeCipherSuites SSL_RSA_WITH_RC4_128_SHA zmprov mcf +zimbraSSLExcludeCipherSuites SSL_DHE_RSA_WITH_3DES_EDE_CBC_SHA zmmailboxdctl restart
The only change made is that 'TLS' has been replaced with 'SSL' for these specific cipher suites.
Additional Content
- For detailed explanations of and Ciphers and Security, please visit the official [Security Wiki page].