TLS - Vulnerability
search cancel

TLS - Vulnerability

book

Article ID: 234474

calendar_today

Updated On:

Products

CA API Gateway

Issue/Introduction

I have Installation with OVF Centos Linux v 7.7.1908, API Gateway 10.0.00

Now the TLS version is 1.0, the scan require Disable 1.0 version, too Enable 1.1 and 1.2.

Can you tell me the procedure to do this and impact over API Gateway Solution.

Environment

Release : 10.0

Component :

Resolution

How to disable TLS 1.0 link to docs 

Link below look for “To allow only TLS 1.1 and TLS 1.2, enter the following”

 https://techdocs.broadcom.com/us/en/ca-enterprise-software/layer7-api-management/api-gateway/10-0/reference/pci-dss-implementation-guide/access-control-and-gateway-management/configure-inbound-and-outbound-security.html

Possible IMPACT

The gateway will always attempt to negotiate communication of inbound and outbound connections at tightest security levels until both ends agree.  If the other end of the communication is ONLY TLS 1.0 the connection will fail 

https://techdocs.broadcom.com/us/en/ca-enterprise-software/layer7-api-management/api-gateway/10-0/release-notes/new-features-and-enhancements.html