Thread Rating:
  • 0 Vote(s) - 0 Average
  • 1
  • 2
  • 3
  • 4
  • 5
OpenSSL 'ChangeCipherSpec' MiTM Potential Vulnerability
#2
Hi. In ServerController.SSLOptions.CipherList, try to put only SCH_USE_STRONG_CRYPTO and TLS 1.2 ciphers only. You can check on the link below, all the ciphers used in windows (and in the IW 15 http.sys version). I'm using IW 15 (http.sys) and configured on windows, only TLS 1.2 and STRONG ciphers.
Link: https://docs.microsoft.com/pt-br/windows...s-10-v1607
Reply


Messages In This Thread
RE: OpenSSL 'ChangeCipherSpec' MiTM Potential Vulnerability - by Jose Nilton Pace - 12-17-2020, 01:36 PM

Forum Jump:


Users browsing this thread: 1 Guest(s)