Support #12908

[SCP ID :##6237##] : VAPT Findings TLS 1.0

Added by Zahir Abd Latif over 2 years ago. Updated over 2 years ago.

Status:Closed - End of life cycleStart date:April 07, 2022
Priority:NormalDue date:
Assignee:Zahir Abd Latif% Done:

100%

Category:MY RIBSpent time:-
Target version:-

Description

Hi,
Kindly attend below request:-

Kindly conduct a feasibility study and impact assessment if we were to disable TLS 1.0 for www.kfhonline.com.my.
Appreciate if you can provide the steps to disable the TLS1.0 as well.

History

#1 Updated by Zahir Abd Latif over 2 years ago

  • Status changed from New - Begin Life Cycle to Pending Customer Feedback
  • Assignee changed from Hafizudin MD to Zahir Abd Latif
  • % Done changed from 0 to 100

CF, Apr 8, 2022:-

Dear Hafiz,

I attached an email discussion from years ago regarding this matter. 
In order to disabled TLS 1.0, Sun Web Server will be using different TLS versions to communicate. 
Back into the discussion, we were requested to upgrade to TLS 1.1 and the requirements are as below where it also included OS Kernel update.

  TLS 1.1 and above required at least JDK 1.6, but current application only supported JDK 1.5. 
There are few system involved in this Oracle ESB 2.5 Iplanet 6 Web server BV Suite. 
To upgrade to JDK1.6 required major upgrade on BV Suite. 
Iplanet web server need to upgrade to version 7.x. 

#2 Updated by Zahir Abd Latif over 2 years ago

  • Status changed from Pending Customer Feedback to Closed - End of life cycle

Issue closed in SCP.

Also available in: Atom PDF