SpanVA reported as a vulnerability in TLS 1.1
search cancel

SpanVA reported as a vulnerability in TLS 1.1

book

Article ID: 273856

calendar_today

Updated On:

Products

CASB Audit CASB Security Advanced CASB Security Premium CASB Security Standard

Issue/Introduction

The customers vulnerability scanner detected SpanVA as vulnerable in TLS Version 1.1 Protocol Deprecated - on port 21.

Cause

FTP enabled in SpanVA while using TLS Version 1.1 Protocol.

TLS 1.1 recognizes FTP as a vulnerability. 

Resolution

You have two options for resolution:

  1. Disable FTP in SpanVA to close Port 21 (Recommended as Port 21 is for FTP, plain text insecure connection).
  2. Upgrading TLS version if you are using FTP in your environment.