1 Reply Latest reply on Mar 4, 2013 4:36 AM by wagnbeu0

    Nessus: SSL Medium Strength Cipher Suites Supported & SSL Weak Cipher Suites Supported

    wagnbeu0

      Hi, I´m running a JBOSS 4.2.3 GA version on W2K3 Server x64.

       

      Now my sec department send me this mails:

       

      SSL Medium Strenght Ciper Suites Supported

      SSL Weak Cipher Suites Supported

       

      My server.xml has this entries:

      SSLCipherSuite="HIGH:!ADH:!SSLv2:!EXPORT40:!EXP:!LOW:!aNULL:!MD5"

       

      But it does not work. What do I need to do to prevent theese error messages?