Forum Discussion

2 Replies

  • No its for Enterprise Manager I'm having issues with. Apparently its going end of software development end of May 2016. I'm currently running the latest version 3.1.1 HF1 but you can't disable RC4 or any other ciphers for that matter. Our Enterprise Manager isn't public facing but it is behind a firewall but our security scanner picks it up since its on the same subnet. Thanks for the reply though

     

    see note from TAC: Unfortunately, version 3.1.1 of Enterprise Manager runs an older version of LTM code that has an older version of OPENSSL. This means that there is currently not a supported method to lock down the Configuration Utility to a specific cipher, or limit ciphers. The current means of mitigation is to allow access to the Enterprise Manager only from trusted networks using a firewall or similar method. The Enterprise Manager configuration utility was never intended to be public-facing.