Solved

SSL Issue

Posted on 2016-11-09
2
17 Views
Last Modified: 2016-11-28
I have this security issue on Windows 2008, do you know how to resolve it?

SSL 63-bit Block Size Ciper Suite Supported


SWEET32

Eric
0
Comment
Question by:Eric Donaldson
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 2
2 Comments
 
LVL 64

Accepted Solution

by:
btan earned 500 total points (awarded by participants)
ID: 41881568
This is due to an attack stated in https://sweet32.info

Configure cipher to use AES 128 and above or 3DES 168/168 instead. The weaker block cipher exist in 3DES and Blowfish e.g. support 64 bits block cipher. You can try iiscrypto tool. https://www.nartac.com/Blog/post/2013/04/19/IIS-Crypto-Explained.aspx

MS schannel control which cipher is supported which the tool above is like GUI to change it.
https://support.microsoft.com/en-us/kb/245030
0
 
LVL 64

Expert Comment

by:btan
ID: 41903934
As per advice given.
0

Featured Post

Industry Leaders: We Want Your Opinion!

We value your feedback.

Take our survey and automatically be enter to win anyone of the following:
Yeti Cooler, Amazon eGift Card, and Movie eGift Card!

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Getting to know the threat landscape in which DDoS has evolved, and making the right choice to get ourselves geared up to defend against  DDoS attacks effectively. Get the necessary preparation works done and focus on Doing the First Things Right.
There is a lot to be said for protecting yourself and your accounts with 2 factor authentication.  I found to my own chagrin, that there is a big downside as well.
The Email Laundry PDF encryption service allows companies to send confidential encrypted  emails to anybody. The PDF document can also contain attachments that are embedded in the encrypted PDF. The password is randomly generated by The Email Laundr…
This video Micro Tutorial shows how to password-protect PDF files with free software. Many software products can do this, such as Adobe Acrobat (but not Adobe Reader), Nuance PaperPort, and Nuance Power PDF, but they are not free products. This vide…
Suggested Courses

626 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question