Fixed
Details
Assignee
Seth LegerSeth LegerReporter
Jeff GehlbachJeff GehlbachComponents
Fix versions
Affects versions
Priority
Major
Details
Details
Assignee
Seth Leger
Seth LegerReporter
Jeff Gehlbach
Jeff GehlbachComponents
Fix versions
Affects versions
Priority
PagerDuty
PagerDuty
PagerDuty
Created July 17, 2015 at 9:51 AM
Updated April 1, 2016 at 8:21 PM
Resolved August 19, 2015 at 12:31 PM
A PCI-DSS audit scan found two weak DH cipher suites are allowed in this configuration which permit ephemeral keys smaller than 1024 bits.
Adding the following items to the list of excluded cipher suites addresses the problem:
TLS_DHE_RSA_WITH_3DES_EDE_CBC_SHA
TLS_DHE_RSA_WITH_AES_128_CBC_SHA
Support ticket: https://mynms.opennms.com/Ticket/Display.html?id=3931