Configuring Ciphers to disable
When Configuring Ciphers to disable we need to go to the Web service configure option on the NetVault WebUI as seen below.
Note this option is available NetVault 11.4.5.15
Open change settings > select server settings > selected web service > input the ciphers you want to disable in option “Ciphers to disable for incoming Web Service connections”.
If more than 1 cipher to disable use coma to separate the Ciphers
Note when entering the Ciphers input the short name not the full name or the Ciphers may not be disabled.
For example1 if the Vulnerability Detection Reports TSLv1.2 cipher suites
“TLS_RSA_WITH_AES_128_CBC_SHA256” we need to use “ESA128-SHA256” in the “Ciphers to disable for incoming Web Service connections” option in NetVault.
For example2 if the Vulnerability Detection Reports RFC4162, extending TLS v1.0
cipher suites
"TLS_RSA_WITH_SEED_CBC_SHA" we need to use " SEED-SHA"
in the “Ciphers to disable for incoming Web Service connections” option in NetVault.
Below is URL that has list of ciphers and there short names that we need to use can
Note the lists is at the bottom of the article.
https://www.openssl.org/docs/man1.1.1/man1/ciphers.html