Skip to content
Snippets Groups Projects
Commit 720dd2cb authored by Jörg Sachse's avatar Jörg Sachse
Browse files

doc: add links to weak Diffie-Hellman mitigation

parent c39602e2
Branches
No related tags found
No related merge requests found
Pipeline #6635 failed
......@@ -19,6 +19,8 @@
value: "{{ item.value }}"
loop:
# configure Tomcat crypto to mitigate against Greenbone OID: 1.3.6.1.4.1.25623.1.0.106223
# details at https://greenbone-server.fqdn.de/nvt/1.3.6.1.4.1.25623.1.0.106223
# mitigation config documented at https://weakdh.org/sysadmin.html
- xpath: "/Server/Service/Connector[@port='8443']"
attribute: "ciphers"
value: "TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256,TLS_ECDHE_ECDSA_WITH_AES_128_GCM_SHA256,TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384,TLS_ECDHE_ECDSA_WITH_AES_256_GCM_SHA384,TLS_DHE_RSA_WITH_AES_128_GCM_SHA256,TLS_DHE_DSS_WITH_AES_128_GCM_SHA256,TLS_ECDHE_RSA_WITH_AES_128_SHA256,TLS_ECDHE_ECDSA_WITH_AES_128_SHA256,TLS_ECDHE_RSA_WITH_AES_128_SHA,TLS_ECDHE_ECDSA_WITH_AES_128_SHA,TLS_ECDHE_RSA_WITH_AES_256_SHA384,TLS_ECDHE_ECDSA_WITH_AES_256_SHA384,TLS_ECDHE_RSA_WITH_AES_256_SHA,TLS_ECDHE_ECDSA_WITH_AES_256_SHA,TLS_DHE_RSA_WITH_AES_128_SHA256,TLS_DHE_RSA_WITH_AES_128_SHA,TLS_DHE_DSS_WITH_AES_128_SHA256,TLS_DHE_RSA_WITH_AES_256_SHA256,TLS_DHE_DSS_WITH_AES_256_SHA,TLS_DHE_RSA_WITH_AES_256_SHA"
......
0% Loading or .
You are about to add 0 people to the discussion. Proceed with caution.
Please register or to comment