SSLv3 is reported on 3 DR nodes.
I followed the instructions online to disable the SSHv3 on the postfix, and restarted the services but the issue remains. These are the steps followed: Data Repository failing security scan on port 5444 or 8443
I am wondering if this is within PM and if it can be disabled.
[root@DR_NodeName postfix]# openssl ciphers -v | awk '{print $2}' | sort | uniq
SSLv3
TLSv1.2
Note: This was observed on an older release on the older RHEL 6.x OS while under an extended maintenance agreement.
EOS NetOps release on older RHEL 6.x OS while under an extended maintenance agreement
Technically there is no more SSL. It's been replaced by TLS.
TLS is the successor to SSL, offering improved security and features. While "SSL" is still commonly used to refer to both, TLS is the current standard for secure internet communication. Both protocols encrypt data for secure transmission, but TLS is more modern and resistant to known vulnerabilities.
If we look up the 'conversions' between the TLS and SSL releases we see these are interchangeable.
The root question then becomes "...does the DR use SSLv3 TLS 1.2?"
The answer? Yes, current Vertica versions support TLS 1.2 for securing client connections.