Uploaded image for project: 'FTS'
  1. FTS
  2. FTS-654

Change default SSL cipher-suite

    Details

    • Type: Task
    • Status: Closed
    • Priority: Minor
    • Resolution: Fixed
    • Affects Version/s: None
    • Fix Version/s: fts 3.5.1, fts-rest 3.5.1
    • Component/s: REST API, Web Monitoring
    • Security Level: Public Data (This ticket is visible to anyone on the internet and will be indexed by search engines)
    • Labels:
      None

      Description

      As we got notified by the security team that the cipher-suite we use in fts-mon and fts-rest is weak, we should modify the http conf as follows:

      SSLCipherSuite RC4-SHA:AES128-SHA:HIGH:!aNULL:!MD5:!RC4
      SSLHonorCipherOrder on 

        Attachments

          Activity

            People

            • Assignee:
              aalvarez Alejandro Alvarez Ayllon
              Reporter:
              amanzi Andrea Manzi
              Component Watchers:
            • Votes:
              0 Vote for this issue
              Watchers:
              3 Start watching this issue

              Dates

              • Created:
                Updated:
                Resolved: