Weak Cipher related errors in the FWSTrace.logs in AccessGateway servers
search cancel

Weak Cipher related errors in the FWSTrace.logs in AccessGateway servers

book

Article ID: 370669

calendar_today

Updated On:

Products

VIP Service

Issue/Introduction

we are observing some SSL Cipher related errors in the FWSTrace.logs in our AG servers.

Is this product related or this are something we need to update in our config files? Below screen shot shows the error message

Environment

Policy Server 12.8.07

AccessGateway - 12.8.07

Resolution

Follow the below instructions to address the issue.

  • Open the file Tomcat/webapps/affwebservices/WEB-INF/classes/SSLCipherConfig.properties
  • Take a backup of this file
  • Change all instances of 'With' with capital letter 'WITH' and do a replace all in the file.
  • Remove or comment the weak ciphers you see in the FWSTrace.log file.
  • Restart the Access Gateway and test the flow and see the log file, you should not see the error in logs.