Guidance on the supported Cipher Suites & Protocols for the App Control Agent and App Control Server software.
Environment
App Control Agent: All Supported Versions
App Control Server: All Supported Versions
Microsoft Windows: All Supported Versions
Linux: All Supported Versions
Apple macOS: All Supported Versions
Resolution
Protocols Supported:
The Agent and Server will rely on the operating system to negotiate a matching Protocol and Cipher Suite to use. If a matching Protocol and Cipher Suite is not available, the Agent and Server will be unable to establish communication and the Agent will show as Disconnected. Additionally, no changes are made to the Protocols or Cipher Suites of the operating system during installation of the Server or Agent applications.
Protocol
Windows
macOS
Linux
SSL (1.0, 2.0, 3.0)
All Supported Versions (Agent/Server)
All Supported Versions
All Supported Versions
TLS (1.0, 1.1, 1.2)
All Supported Versions (Agent/Server)
All Supported Versions
All Supported Versions
TLS (1.3)
Agent: 8.9.4+ Server: 8.10.2+
Agent: 8.9.2+
Pending... (EPCB-19215)
Making Modifications:
Warning:
Improper modification of TLS/SSL protocols could cause connectivity issues between:
App Control Agents
App Control Server
SQL Server or other dependencies.
Modifications to the Protocols, Cipher Suites, or orders must be made at the Operating System layer.
This will force all applications to use only the enabled Protocols/Cipher Suites accordingly and in the order specified.
Changes to these must be implemented for all relevant endpoints and application servers.
Endpoints must also support the desired changes, example: