SAP Knowledge Base Article - Preview

3292519 - Document how to disable insecure cipher suites and impact of prime numbers - SAP PowerDesigner

Symptom

  • Looking for documentation on how to disable insecure cipher suites and the impact of prime numbers. 
  • Doing a security audit with insightVM Nexpose, the following insecure cipher suites are shown:

TLS_RSA_WITH_AES_128_CBC_SHA
TLS_RSA_WITH_AES_128_CBC_SHA256
TLS_RSA_WITH_AES_128_CCM
TLS_RSA_WITH_AES_128_CCM_8
TLS_RSA_WITH_AES_128_GCM_SHA256
TLS_RSA_WITH_AES_256_CBC_SHA
TLS_RSA_WITH_AES_256_CBC_SHA256
TLS_RSA_WITH_AES_256_CCM
TLS_RSA_WITH_AES_256_CCM_8
TLS_RSA_WITH_AES_256_GCM_SHA384
TLS_RSA_WITH_ARIA_128_GCM_SHA256
TLS_RSA_WITH_ARIA_256_GCM_SHA384

and then
"The server is using the following commonly used Diffie-Hellman primes:
xxxxxxxxxxxxxxxxxxxxxxxxxxxx..."


Read more...

Environment

SAP PowerDesigner (PD) 16.7 SP05 PL01

Keywords

NodeJS, vulnerability, portal, web , KBA , BC-SYB-PD , PowerDesigner , How To

About this page

This is a preview of a SAP Knowledge Base Article. Click more to access the full version on SAP for Me (Login required).

Search for additional results

Visit SAP Support Portal's SAP Notes and KBA Search.