Information about the Security cipher updates
Tags: Advisories, Product Advisories, Version 12.0
Advisory Type
Announcement
Advisory Content
Dear Customer,
To improve the security posture, the support for the following Ciphers in NetWitness Platform XDR has been removed/disabled from 12.1.1 and above releases.
- DHE-RSA-AES128-SHA
- DHE-RSA-AES256-SHA
- ECDHE-RSA-AES128-SHA
- ECDHE-RSA-AES256-SHA
- DHE-RSA-AES128-SHA256
- DHE-RSA-AES256-SHA256
- ECDHE-RSA-AES128-SHA256
- ECDHE-RSA-AES256-SHA384
- RSA-AES128-SHA256
- RSA-AES128-SHA256(AES-GCM)
- RSA-AES256-SHA384
- AES128-SHA
- AES256-SHA
- RSA-AES128-SHA256(AES-CBC)
- RSA-AES256-SHA256
Note: If the communication between the external integrated devices (e.g.; Active Directory) and the NetWitness Platform XDR is interrupted, you must disable the use of above-mentioned Ciphers on the external integrated devices.
Thank you for your prompt attention to this matter. If you have any questions or concerns regarding these updates, please contact NetWitness Customer Support.