<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic This is a supported Host in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/qualys-connector-openning-ssl-v2-v3-connections/m-p/3034364#M1016801</link>
    <description>&lt;P&gt;This is a supported Host Input Connector. &amp;nbsp;You can open a TAC support case and get help directly from the support team.&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Doug&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;</description>
    <pubDate>Thu, 02 Mar 2017 15:51:08 GMT</pubDate>
    <dc:creator>dohurd</dc:creator>
    <dc:date>2017-03-02T15:51:08Z</dc:date>
    <item>
      <title>Qualys connector openning SSL v2/v3 connections</title>
      <link>https://community.cisco.com/t5/network-security/qualys-connector-openning-ssl-v2-v3-connections/m-p/3034363#M1016799</link>
      <description>&lt;P&gt;Hello everyone,&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;We are setting up the Qualys connector for the first time and we have run into an interesting scenario. While attempting to run the qualys_connector.pl script the following messages are displayed:&lt;/P&gt;
&lt;P&gt;SSL_connect:before/connect initialization&lt;BR /&gt;SSL_connect:SSLv2/v3 write client hello A&lt;BR /&gt;SSL_connect:SSLv3 read server hello A&lt;BR /&gt;SSL_connect:SSLv3 read server certificate A&lt;BR /&gt;SSL_connect:SSLv3 read server key exchange A&lt;BR /&gt;SSL_connect:SSLv3 read server done A&lt;BR /&gt;SSL_connect:SSLv3 write client key exchange A&lt;BR /&gt;SSL_connect:SSLv3 write change cipher spec A&lt;BR /&gt;SSL_connect:SSLv3 write finished A&lt;BR /&gt;SSL_connect:SSLv3 flush data&lt;BR /&gt;SSL_connect:SSLv3 read finished A&lt;BR /&gt;Tue Feb 21 10:13:16 2017 [INFO] Launching Report&lt;BR /&gt;SSL_connect:before/connect initialization&lt;BR /&gt;SSL_connect:SSLv2/v3 write client hello A&lt;BR /&gt;SSL_connect:SSLv3 read server hello A&lt;BR /&gt;SSL_connect:SSLv3 read server certificate A&lt;BR /&gt;SSL_connect:SSLv3 read server key exchange A&lt;BR /&gt;SSL_connect:SSLv3 read server done A&lt;BR /&gt;SSL_connect:SSLv3 write client key exchange A&lt;BR /&gt;SSL_connect:SSLv3 write change cipher spec A&lt;BR /&gt;SSL_connect:SSLv3 write finished A&lt;BR /&gt;SSL_connect:SSLv3 flush data&lt;BR /&gt;SSL_connect:SSLv3 read finished A&lt;BR /&gt;Tue Feb 21 10:13:18 2017 [ERROR] Launch response: &amp;lt;?xml version="1.0" encoding=" UTF-8" ?&amp;gt;&lt;BR /&gt;&amp;lt;!DOCTYPE SIMPLE_RETURN SYSTEM "&lt;A href="https://qualysapi.qualys.com/api/2.0/simple_retu" target="_blank"&gt;https://qualysapi.qualys.com/api/2.0/simple_retu&lt;/A&gt; rn.dtd"&amp;gt;&lt;BR /&gt;&amp;lt;SIMPLE_RETURN&amp;gt;&lt;BR /&gt; &amp;lt;RESPONSE&amp;gt;&lt;BR /&gt; &amp;lt;DATETIME&amp;gt;2017-02-21T15:13:18Z&amp;lt;/DATETIME&amp;gt;&lt;BR /&gt; &amp;lt;CODE&amp;gt;1903&amp;lt;/CODE&amp;gt;&lt;BR /&gt; &amp;lt;TEXT&amp;gt;Missing required parameter(s): report_refs (this report requires a tar get)&amp;lt;/TEXT&amp;gt;&lt;BR /&gt; &amp;lt;/RESPONSE&amp;gt;&lt;BR /&gt;&amp;lt;/SIMPLE_RETURN&amp;gt;&lt;/P&gt;
&lt;P&gt;Understanding that our report is missing parameter (If anyone knows what that is, please let me know), what is also concerning is that the connector is opening a SSL v3 connection to Qualys. Does anyone know how to force the connector to TLS 1.x? I have included details of our environment below.&lt;/P&gt;
&lt;P&gt;Host OS: RHEL 7.3&lt;/P&gt;
&lt;P&gt;Perl version: v5.16.3&lt;/P&gt;
&lt;P&gt;Perl modules installed with versions:&lt;/P&gt;
&lt;UL&gt;
&lt;LI&gt;IO::Socket::SSL v2.046&lt;/LI&gt;
&lt;LI&gt;XML::Simple v2.22&lt;/LI&gt;
&lt;LI&gt;XML::Twig v3.52&lt;/LI&gt;
&lt;LI&gt;Net::IP v1.26&lt;/LI&gt;
&lt;LI&gt;YAML::XS v0.63&lt;/LI&gt;
&lt;LI&gt;LWP::UserAgent v 6.19&lt;/LI&gt;
&lt;LI&gt;Net::SSL v2.86&lt;/LI&gt;
&lt;/UL&gt;</description>
      <pubDate>Tue, 12 Mar 2019 13:17:56 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/qualys-connector-openning-ssl-v2-v3-connections/m-p/3034363#M1016799</guid>
      <dc:creator>klrodriguez1</dc:creator>
      <dc:date>2019-03-12T13:17:56Z</dc:date>
    </item>
    <item>
      <title>This is a supported Host</title>
      <link>https://community.cisco.com/t5/network-security/qualys-connector-openning-ssl-v2-v3-connections/m-p/3034364#M1016801</link>
      <description>&lt;P&gt;This is a supported Host Input Connector. &amp;nbsp;You can open a TAC support case and get help directly from the support team.&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Doug&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 02 Mar 2017 15:51:08 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/qualys-connector-openning-ssl-v2-v3-connections/m-p/3034364#M1016801</guid>
      <dc:creator>dohurd</dc:creator>
      <dc:date>2017-03-02T15:51:08Z</dc:date>
    </item>
  </channel>
</rss>

