cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
640
Views
0
Helpful
1
Replies

Vulnerability on Cisco Devices!!!

orlandoegb
Level 1
Level 1

I would like to know the best solution for this three issues on my cisco devices (pix 515e, asa5510, sw 2960s) detected by the Security Metrics Vision Vulnerability Scan:

1. SSL server accepts weak ciphers.

2. SSL certificate is signed with weak hash function: MD5.

3.TLS Protocol Session Renegotiation Security Vulnerability.

Thank you for any assistance!!!

Orlando

1 Reply 1

James Leinweber
Level 4
Level 4

> 1. SSL server accepts weak ciphers.

Specify just the ciphersuites you like, e.g.

    ssl encryption aes256-sha1 3des-sha1

I'm not sure about (2) and (3); open a TAC with Cisco; they may not be possible to work around on the current software.

-- Jim Leinweber, WI State Lab of Hygiene

Review Cisco Networking for a $25 gift card