SAP Knowledge Base Article - Preview

3694052 - TLS Cipher Disablement for Outbound Communication from Cloud Integration

Symptom

In accordance with the Java Cryptographic Roadmap, Cloud Integration (former CPI) gradually deprecates Weak Cipher Suites for outbound TLS communication. Customers may get notifications prior to such deprecation. This article aims at providing clarity in this topic.

Key Points:

  • Weak Cipher Suites are subject to attacks, and are not used commonly by modern TLS servers.
    Due to this, impact level is expected to be minimal.
  • This involves only Outbound TLS communication scenarios, i.e., Cloud Integration to external servers.
  • There will be no impact to other communication scenarios:
    • Outbound On-Premise (through Cloud Connector) scenarios. i.e., Cloud Integration -> Cloud Connector -> On-Premise systems.
    • Any Inbound communications. i.e., sender system -> Cloud Integration.
  • Target TLS servers should support at least 1 Strong cipher listed in:
    SAP KBA 3039340 - Supported Ciphers in Cloud Integration.


Read more...

Environment

  • Cloud Integration
  • SAP Integration Suite

Product

Cloud Integration all versions ; SAP Integration Suite all versions

Keywords

Cipher Suite, Cipher, TLS, JDK, HTTPS, Cloud Integration, SAP Integration Suite, CPI, SAP CPI, SCPI, tenant, IFlow, Integration Flow , KBA , LOD-HCI-PI-OPS , Cloud Operations , Product Enhancement

About this page

This is a preview of a SAP Knowledge Base Article. Click more to access the full version on SAP for Me (Login required).

Search for additional results

Visit SAP Support Portal's SAP Notes and KBA Search.