Vulnerability - TLS Version 1.0 Protocol Detection detected on ALM Application Server on Port 2121 (2024)

Hi,

Recieved the below vulnerability on port 2121 for application server.

Below are the details

severity->high
hostname-> A.B.C.D
port-> 2121
protocol-> TCP
Infrastructure Detail -> ALM 15 App Server
name -> TLS Version 1.0 Protocol Detection
output -> TLSv1 is enabled and the server supports at least one cipher.
description "The remote service accepts connections encrypted using TLS 1.0. TLS 1.0 has a number of cryptographic design flaws. Modern implementations of TLS 1.0 mitigate these problems, but newer versions of TLS like 1.2 and 1.3 are designed against these flaws and should be used whenever possible.

As of March 31, 2020, Endpoints that aren’t enabled for TLS 1.2 and higher will no longer function properly with major web browsers and major vendors.

PCI DSS v3.2 requires that TLS 1.0 be disabled entirely by June 30, 2018, except for POS POI terminals (and the SSL/TLS termination points to which they connect) that can be verified as not being susceptible to any known exploits."
synopsis The remote service encrypts traffic using an older version of TLS.
id -> 104743
ipv4 -> AA.BBB.CC.DD
operating_system -> ['Microsoft Windows Server 2016 Standard']
solution -> Enable support for TLS 1.2 and 1.3, and disable support for TLS 1.0.
cve
cvss3_base_score -> 6.5
family -> Service detection
see_also ['https://tools.ietf.org/html/draft-ietf-tls-oldversions-deprecate-00']

we have already made the changes in “E:\ProgramData\Micro Focus\ALM\server\conf\jetty-ssl.xml” for excluding TLSv1 protocol by excluding TLSv1 protocol as below

Locate the “ExcludeProtocols” section and ensure that entries for SSLv3, TLSv1, and TLSv1.1 protocols are included, as illustrated below: -

<Set name=”ExcludeProtocols”>
<Array type=”java.lang.String”>
<Item>SSLv3</Item>
<Item>TLSv1</Item>
<Item>TLSv1.1</Item>
<Item>SSLv2Hello</Item>
</Array>
</Set>

Create an “IncludeProtocols” sections just below the “ExcludeProtocols” section, with the content below: -

<Set name=”IncludeProtocols”>
<Array type=”String”>
<Item>TLSv1.2</Item>
<Item>TLSv1.3</Item>
</Array>
</Set>

Why is TLS Version 1.0 Protocol Detection occuring on port 2121 even after doing the exclusion in jetty-ssl.xml?

Vulnerability - TLS Version 1.0 Protocol Detection detected on ALM Application Server on Port 2121 (2024)
Top Articles
Cadecas in Cuba - Everything You Need to Know About Exchanging Money in Cuba
How To Build Wealth With These 13 Wealth Building Tips
Bj 사슴이 분수
Craigslist Free En Dallas Tx
Mrh Forum
Algebra Calculator Mathway
Www.politicser.com Pepperboy News
New Slayer Boss - The Araxyte
Directions To 401 East Chestnut Street Louisville Kentucky
Gunshots, panic and then fury - BBC correspondent's account of Trump shooting
Day Octopus | Hawaii Marine Life
Danielle Longet
Garrick Joker'' Hastings Sentenced
Pwc Transparency Report
Find your energy supplier
2021 Lexus IS for sale - Richardson, TX - craigslist
My.doculivery.com/Crowncork
Hartland Liquidation Oconomowoc
Fool’s Paradise movie review (2023) | Roger Ebert
Truth Of God Schedule 2023
Second Chance Maryland Lottery
Der Megatrend Urbanisierung
Www Craigslist Milwaukee Wi
Byui Calendar Fall 2023
Daylight Matt And Kim Lyrics
Petco Vet Clinic Appointment
Panic! At The Disco - Spotify Top Songs
Toyota Camry Hybrid Long Term Review: A Big Luxury Sedan With Hatchback Efficiency
Titanic Soap2Day
Mineral Wells Skyward
Dmv In Anoka
Belledelphine Telegram
Marokko houdt honderden mensen tegen die illegaal grens met Spaanse stad Ceuta wilden oversteken
R Baldurs Gate 3
27 Fantastic Things to do in Lynchburg, Virginia - Happy To Be Virginia
10-Day Weather Forecast for Santa Cruz, CA - The Weather Channel | weather.com
Miles City Montana Craigslist
Nurofen 400mg Tabletten (24 stuks) | De Online Drogist
Obsidian Guard's Skullsplitter
new haven free stuff - craigslist
拿到绿卡后一亩三分地
Bernie Platt, former Cherry Hill mayor and funeral home magnate, has died at 90
301 Priest Dr, KILLEEN, TX 76541 - HAR.com
Shoecarnival Com Careers
Mathews Vertix Mod Chart
From Grindr to Scruff: The best dating apps for gay, bi, and queer men in 2024
Cara Corcione Obituary
Craigslist Marshfield Mo
Slug Menace Rs3
Noelleleyva Leaks
Sunset On November 5 2023
Latest Posts
Article information

Author: Jeremiah Abshire

Last Updated:

Views: 6491

Rating: 4.3 / 5 (54 voted)

Reviews: 85% of readers found this page helpful

Author information

Name: Jeremiah Abshire

Birthday: 1993-09-14

Address: Apt. 425 92748 Jannie Centers, Port Nikitaville, VT 82110

Phone: +8096210939894

Job: Lead Healthcare Manager

Hobby: Watching movies, Watching movies, Knapping, LARPing, Coffee roasting, Lacemaking, Gaming

Introduction: My name is Jeremiah Abshire, I am a outstanding, kind, clever, hilarious, curious, hilarious, outstanding person who loves writing and wants to share my knowledge and understanding with you.