CA Identity Suite TLS/SSL vulnerabilities
search cancel

CA Identity Suite TLS/SSL vulnerabilities

book

Article ID: 262278

calendar_today

Updated On:

Products

CA Identity Suite

Issue/Introduction

Some of the cipher suites that are used in CA Identity Suite (Virtual Appliance) 14.4 (port 443), are using CBC and SHA1 mode encryption, and therefore are considered weak.

How can we disable SHA1 and CBC mode cipher encryption in vApp 14.4?

 

Environment

Release : 14.4

Resolution

There is a hot fix available to address the SHA1 and CBC ciphers problem. The fix can be applied on any vApp node with CentOS 8.

Please contact Broadcom Support to obtain it.