Disabling the Weak Ciphers on a WINDOWS SERVER WHICH uses WCF services - Microsoft Q&A (2024)

You can and should disable the weak ciphers. WCF can use SSL if you have configured it to listen on HTTPS. In this case the client and server negotiate on the cipher to use. The client sends what it supports and the server compares that to what is enabled and then uses the "best" one. Disabling the weak ciphers on the server prevents a client from using a weak cipher that could be easily broken. There is a chance that a client that doesn't have any strong ciphers enabled will break but honestly this is a security issue that needs to be resolved anyway. It is unlikely you will run into issues because the ciphers have been around a long time so disabling the weaker one's should be harmless. If you have public facing clients then send out a notification about the change(s) and give them some time to ensure they are compliant before turning it off.

The protocol should also be disabled. In fact only TLS 1.2 is recommended. However this is a bigger change. Firstly you need to ensure you're running on a newer .NET Framework as TLS 1.2 isn't supported on older ones. If you can recompile your WCF service then you are done otherwise you need to make a change to the machine settings to allow TLS 1.2 on older code that you cannot recompile. Once that is done then you can confirm that your WCF service supports both the older and newer protocols. This is documented here.

Once you support TLS 1.2 in your service you should notify your clients that you are disabling everything besides TLS 1.2. All clients must ensure they are compatible with this protocol. Because clients can vary what is involved depends on the client software. Irrelevant this has been the recommendation for several years now so most everyone should be updated. Most online sites switch to TLS 1.2 only a while back so this is definitely something you should prioritize.

Note that changing SSL settings requires a server reboot so you will need to schedule some downtime for the changes.

Disabling the Weak Ciphers on a WINDOWS SERVER WHICH uses WCF services - Microsoft Q&A (2024)
Top Articles
How to check screen resolution on Android
How to benchmark & test battery life on an Android phone
Craigslist Myrtle Beach Motorcycles For Sale By Owner
Xre-02022
Tyler Sis 360 Louisiana Mo
Occupational therapist
Wellcare Dual Align 129 (HMO D-SNP) - Hearing Aid Benefits | FreeHearingTest.org
Soap2Day Autoplay
Top Financial Advisors in the U.S.
Merlot Aero Crew Portal
Noaa Swell Forecast
Nwi Police Blotter
J Prince Steps Over Takeoff
Paketshops | PAKET.net
Giovanna Ewbank Nua
Osrs Blessed Axe
Nonne's Italian Restaurant And Sports Bar Port Orange Photos
Wizard Build Season 28
Letter F Logos - 178+ Best Letter F Logo Ideas. Free Letter F Logo Maker. | 99designs
Houses and Apartments For Rent in Maastricht
Mflwer
Salem Oregon Costco Gas Prices
Walgreens San Pedro And Hildebrand
Jayah And Kimora Phone Number
U Break It Near Me
Bridge.trihealth
Nevermore: What Doesn't Kill
Doublelist Paducah Ky
Munis Self Service Brockton
Sadie Sink Reveals She Struggles With Imposter Syndrome
Preggophili
Dr Seuss Star Bellied Sneetches Pdf
Effingham Daily News Police Report
The Goonies Showtimes Near Marcus Rosemount Cinema
Craigslist Free Stuff San Gabriel Valley
Pnc Bank Routing Number Cincinnati
Sedano's Supermarkets Expands to Orlando - Sedano's Supermarkets
Kerry Cassidy Portal
Linda Sublette Actress
Worcester County Circuit Court
Walmart Pharmacy Hours: What Time Does The Pharmacy Open and Close?
Electric Toothbrush Feature Crossword
Below Five Store Near Me
Ds Cuts Saugus
Phmc.myloancare.com
Theater X Orange Heights Florida
Amateur Lesbian Spanking
Congruent Triangles Coloring Activity Dinosaur Answer Key
FactoryEye | Enabling data-driven smart manufacturing
Madden 23 Can't Hire Offensive Coordinator
The top 10 takeaways from the Harris-Trump presidential debate
Coors Field Seats In The Shade
Latest Posts
Article information

Author: Dr. Pierre Goyette

Last Updated:

Views: 6236

Rating: 5 / 5 (70 voted)

Reviews: 85% of readers found this page helpful

Author information

Name: Dr. Pierre Goyette

Birthday: 1998-01-29

Address: Apt. 611 3357 Yong Plain, West Audra, IL 70053

Phone: +5819954278378

Job: Construction Director

Hobby: Embroidery, Creative writing, Shopping, Driving, Stand-up comedy, Coffee roasting, Scrapbooking

Introduction: My name is Dr. Pierre Goyette, I am a enchanting, powerful, jolly, rich, graceful, colorful, zany person who loves writing and wants to share my knowledge and understanding with you.