Vulnerability - TLS Version 1.0 Protocol Detection detected on ALM Application Server on Port 2121 (2024)

Hi,

Recieved the below vulnerability on port 2121 for application server.

Below are the details

severity->high
hostname-> A.B.C.D
port-> 2121
protocol-> TCP
Infrastructure Detail -> ALM 15 App Server
name -> TLS Version 1.0 Protocol Detection
output -> TLSv1 is enabled and the server supports at least one cipher.
description "The remote service accepts connections encrypted using TLS 1.0. TLS 1.0 has a number of cryptographic design flaws. Modern implementations of TLS 1.0 mitigate these problems, but newer versions of TLS like 1.2 and 1.3 are designed against these flaws and should be used whenever possible.

As of March 31, 2020, Endpoints that aren’t enabled for TLS 1.2 and higher will no longer function properly with major web browsers and major vendors.

PCI DSS v3.2 requires that TLS 1.0 be disabled entirely by June 30, 2018, except for POS POI terminals (and the SSL/TLS termination points to which they connect) that can be verified as not being susceptible to any known exploits."
synopsis The remote service encrypts traffic using an older version of TLS.
id -> 104743
ipv4 -> AA.BBB.CC.DD
operating_system -> ['Microsoft Windows Server 2016 Standard']
solution -> Enable support for TLS 1.2 and 1.3, and disable support for TLS 1.0.
cve
cvss3_base_score -> 6.5
family -> Service detection
see_also ['https://tools.ietf.org/html/draft-ietf-tls-oldversions-deprecate-00']

we have already made the changes in “E:\ProgramData\Micro Focus\ALM\server\conf\jetty-ssl.xml” for excluding TLSv1 protocol by excluding TLSv1 protocol as below

Locate the “ExcludeProtocols” section and ensure that entries for SSLv3, TLSv1, and TLSv1.1 protocols are included, as illustrated below: -

<Set name=”ExcludeProtocols”>
<Array type=”java.lang.String”>
<Item>SSLv3</Item>
<Item>TLSv1</Item>
<Item>TLSv1.1</Item>
<Item>SSLv2Hello</Item>
</Array>
</Set>

Create an “IncludeProtocols” sections just below the “ExcludeProtocols” section, with the content below: -

<Set name=”IncludeProtocols”>
<Array type=”String”>
<Item>TLSv1.2</Item>
<Item>TLSv1.3</Item>
</Array>
</Set>

Why is TLS Version 1.0 Protocol Detection occuring on port 2121 even after doing the exclusion in jetty-ssl.xml?

Vulnerability - TLS Version 1.0 Protocol Detection detected on ALM Application Server on Port 2121 (2024)
Top Articles
Games Keep Crashing on Windows 11/10 PC? Why & How to Fix? - MiniTool
Quantum Numbers (Principal, Azimuthal, Magnetic and Spin) - Definition, Detailed Explanation, Videos and FAQs of Quantum Numbers.
Bild Poster Ikea
News - Rachel Stevens at RachelStevens.com
Georgia Vehicle Registration Fees Calculator
Craigslist Dog Sitter
Steve Strange - From Punk To New Romantic
What Happened To Father Anthony Mary Ewtn
Bustle Daily Horoscope
Weather In Moon Township 10 Days
Espn Expert Picks Week 2
Xm Tennis Channel
Infinite Campus Parent Portal Hall County
Craigslist Alabama Montgomery
Dump Trucks in Netherlands for sale - used and new - TrucksNL
Craiglist Galveston
Les Schwab Product Code Lookup
Nissan Rogue Tire Size
Carolina Aguilar Facebook
Nail Salon Goodman Plaza
3476405416
Trivago Sf
Adt Residential Sales Representative Salary
Parc Soleil Drowning
Where to eat: the 50 best restaurants in Freiburg im Breisgau
Yonkers Results For Tonight
Ecampus Scps Login
Redfin Skagit County
F45 Training O'fallon Il Photos
Dmv In Anoka
Best Town Hall 11
Gt7 Roadster Shop Rampage Engine Swap
FREE Houses! All You Have to Do Is Move Them. - CIRCA Old Houses
How Much Is An Alignment At Costco
6143 N Fresno St
Cheap Motorcycles Craigslist
Peter Vigilante Biography, Net Worth, Age, Height, Family, Girlfriend
Tgh Imaging Powered By Tower Wesley Chapel Photos
Finland’s Satanic Warmaster’s Werwolf Discusses His Projects
Tillman Funeral Home Tallahassee
Jasgotgass2
Union Corners Obgyn
Santa Clara County prepares for possible ‘tripledemic,’ with mask mandates for health care settings next month
Avatar: The Way Of Water Showtimes Near Jasper 8 Theatres
Darkglass Electronics The Exponent 500 Test
Secrets Exposed: How to Test for Mold Exposure in Your Blood!
Pas Bcbs Prefix
Minute Clinic Mooresville Nc
sin city jili
Epower Raley's
Jasgotgass2
Latest Posts
Article information

Author: Jeremiah Abshire

Last Updated:

Views: 6491

Rating: 4.3 / 5 (54 voted)

Reviews: 85% of readers found this page helpful

Author information

Name: Jeremiah Abshire

Birthday: 1993-09-14

Address: Apt. 425 92748 Jannie Centers, Port Nikitaville, VT 82110

Phone: +8096210939894

Job: Lead Healthcare Manager

Hobby: Watching movies, Watching movies, Knapping, LARPing, Coffee roasting, Lacemaking, Gaming

Introduction: My name is Jeremiah Abshire, I am a outstanding, kind, clever, hilarious, curious, hilarious, outstanding person who loves writing and wants to share my knowledge and understanding with you.