cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1862
Views
0
Helpful
4
Replies

How to close vulnerability "TSLv1 weak encryption algorithm in FTD".

mumbai.support
Level 1
Level 1

We have found TSLv1 weak encryption algorithm in FTD in audit and they suggest mitigate it with latest TSLv. But in present we can see only TSLv1.2 is available with in FMC, both FMC and FTD version 6.4.0.7.

Is it close once we upgrade it with TSLv1.2 and Does it any impact?

1 Accepted Solution

Accepted Solutions

@mumbai.support 

Yes it does, if you are using TLS protocol.

Most modern operating systems should support TLS 1.2.

The guide shows you how to make the changes and test.

 

HTH

 

View solution in original post

4 Replies 4

Hi @mumbai.support 

You should be fine disabling older versions of TLS and just using TLS 1.2, most modern supported operating systems supports TLS 1.2.

 

Refer to this guide for more information about TLS on FTD.

 

Bear in mind if you are using Remote Access VPN and want to use DTLS 1.2 then you need to upgrade to FMC/FTD 6.6.

 

HTH

Hi Rob Ingram,

  Thank You...!

   If I change it from 1.0 to 1.2 then does it any impact in remote VPN CISCO AnyConnect?

@mumbai.support 

Yes it does, if you are using TLS protocol.

Most modern operating systems should support TLS 1.2.

The guide shows you how to make the changes and test.

 

HTH

 

SurajS
Level 1
Level 1

Thank You...! It is working. 

Review Cisco Networking products for a $25 gift card