This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

XG115 - need to disable SSLv3 and TLSv1 from outside connections. External vulnerability scans show port 443 can be attached with outdated protocols.

XG115 - need to disable SSLv3 and TLSv1 from outside connections. External vulnerability scans show port 443 can be attached with outdated protocols.

We can disable unrecognized SSL protocols on the web protection, but that is not securing the firewall from external threats.



This thread was automatically locked due to age.
Parents Reply
  • After multiple sessions with support the information in that link is not valid. It appears that you must generate a valid 3rd party SSL certificate and replace the default appliance certificate for the vulnerability to be resolved. We have tested on V16 and V17 firmware and they are still failing PCI scans WITHOUT a valid 3rd party SSL certificate.

Children
No Data