cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
728
Views
3
Helpful
3
Replies

CVP Certificate Vulnerability

Muhammed Ashiq
Level 1
Level 1

Hi,

We have CVP 11.6 with UCCE 11.6

Security team came with below findings for CVPs and we are not able to locate where is this Certificate installed. We have regenerated CVP call server,vxml server,and wsm certifiactes already with SHA256 from SHA1.

 

Plugin

Plugin Name

IP Address

Protocol

Port

35291

SSL Certificate Signed Using Weak Hashing Algorithm

xx.xx.xx.xxx

TCP

5061

How we can locate this and regenerate with SHA256

1 Accepted Solution

Accepted Solutions

Muhammed Ashiq
Level 1
Level 1

Dears,

Thanks for the replies.

We already regenerated the Call Server/VXML Server certificate using SHA256 and the finding from security team was a false positive (after multiple scan the finding didn't appeared) trigger.

View solution in original post

3 Replies 3

Hi Muhammed,

Normally we Exchange Self-Signed /CA Singed Certificates in a UCCE/PCCE Solution from 12.5.x onwards. Maybe check the below link to locate the CVP cert’s locations.

https://www.cisco.com/c/en/us/support/docs/contact-center/unified-contact-center-enterprise/215445-exchange-self-signed-certificates-in-a-u.html#anc11

Regards,
Ram.S

Muhammed Ashiq
Level 1
Level 1

Dears,

Thanks for the replies.

We already regenerated the Call Server/VXML Server certificate using SHA256 and the finding from security team was a false positive (after multiple scan the finding didn't appeared) trigger.