<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Disabling CBC mode ciphers in Monitoring Splunk</title>
    <link>https://community.splunk.com/t5/Monitoring-Splunk/Disabling-CBC-mode-ciphers/m-p/167546#M7841</link>
    <description>&lt;P&gt;Just an update to make sure people use the current options: (v7.3+)&lt;/P&gt;

&lt;P&gt;&lt;A href="https://docs.splunk.com/Documentation/Splunk/latest/Security/Ciphersuites"&gt;https://docs.splunk.com/Documentation/Splunk/latest/Security/Ciphersuites&lt;/A&gt;&lt;/P&gt;

&lt;P&gt;HTH,&lt;/P&gt;

&lt;P&gt;Holger&lt;/P&gt;</description>
    <pubDate>Mon, 29 Jul 2019 13:04:06 GMT</pubDate>
    <dc:creator>hsesterhenn_spl</dc:creator>
    <dc:date>2019-07-29T13:04:06Z</dc:date>
    <item>
      <title>Disabling CBC mode ciphers</title>
      <link>https://community.splunk.com/t5/Monitoring-Splunk/Disabling-CBC-mode-ciphers/m-p/167543#M7838</link>
      <description>&lt;P&gt;Hi Team,&lt;/P&gt;

&lt;P&gt;&lt;STRONG&gt;SSLv3.0/TLSv1.0 Protocol Weak CBC Mode vulnerability&lt;/STRONG&gt; have been identified on Splunk during internal scan. &lt;BR /&gt;
The internal PA team asked us to upgrade to TLSv1.1 or TLSv1.2,if not possible to upgrade they asked us to disable CBC mode ciphers.&lt;BR /&gt;
It could be better if you could guide us to fix the issue.&lt;STRONG&gt;strong text&lt;/STRONG&gt;&lt;/P&gt;

&lt;P&gt;Regards,&lt;BR /&gt;
Shiva&lt;/P&gt;</description>
      <pubDate>Fri, 16 May 2014 13:32:55 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Monitoring-Splunk/Disabling-CBC-mode-ciphers/m-p/167543#M7838</guid>
      <dc:creator>lal37</dc:creator>
      <dc:date>2014-05-16T13:32:55Z</dc:date>
    </item>
    <item>
      <title>Re: Disabling CBC mode ciphers</title>
      <link>https://community.splunk.com/t5/Monitoring-Splunk/Disabling-CBC-mode-ciphers/m-p/167544#M7839</link>
      <description>&lt;P&gt;For Splunkd (port 8089 by default) - the proper setting of cipher suites is in &lt;CODE&gt;server.conf&lt;/CODE&gt; under the &lt;CODE&gt;sslConfig&lt;/CODE&gt; stanza, set the &lt;CODE&gt;cipherSuite&lt;/CODE&gt; option using a valid OpenSSL cipher suite specification.  See  &lt;A href="http://docs.splunk.com/Documentation/Splunk/latest/Admin/Serverconf"&gt;http://docs.splunk.com/Documentation/Splunk/latest/Admin/Serverconf&lt;/A&gt;&lt;/P&gt;

&lt;P&gt;For splunkweb, there are similar settings in &lt;CODE&gt;web.conf&lt;/CODE&gt;.&lt;/P&gt;</description>
      <pubDate>Fri, 16 May 2014 15:05:04 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Monitoring-Splunk/Disabling-CBC-mode-ciphers/m-p/167544#M7839</guid>
      <dc:creator>dwaddle</dc:creator>
      <dc:date>2014-05-16T15:05:04Z</dc:date>
    </item>
    <item>
      <title>Re: Disabling CBC mode ciphers</title>
      <link>https://community.splunk.com/t5/Monitoring-Splunk/Disabling-CBC-mode-ciphers/m-p/167545#M7840</link>
      <description>&lt;P&gt;Hi dawadle,&lt;/P&gt;

&lt;P&gt;I would like to know how we can replace SSL version to TLS version.&lt;BR /&gt;
I guess by default splunk is using SSL encryption.&lt;BR /&gt;
Please advice.&lt;/P&gt;

&lt;P&gt;Thanks and Regards,&lt;BR /&gt;
Shiva&lt;/P&gt;</description>
      <pubDate>Mon, 26 May 2014 04:33:58 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Monitoring-Splunk/Disabling-CBC-mode-ciphers/m-p/167545#M7840</guid>
      <dc:creator>lal37</dc:creator>
      <dc:date>2014-05-26T04:33:58Z</dc:date>
    </item>
    <item>
      <title>Re: Disabling CBC mode ciphers</title>
      <link>https://community.splunk.com/t5/Monitoring-Splunk/Disabling-CBC-mode-ciphers/m-p/167546#M7841</link>
      <description>&lt;P&gt;Just an update to make sure people use the current options: (v7.3+)&lt;/P&gt;

&lt;P&gt;&lt;A href="https://docs.splunk.com/Documentation/Splunk/latest/Security/Ciphersuites"&gt;https://docs.splunk.com/Documentation/Splunk/latest/Security/Ciphersuites&lt;/A&gt;&lt;/P&gt;

&lt;P&gt;HTH,&lt;/P&gt;

&lt;P&gt;Holger&lt;/P&gt;</description>
      <pubDate>Mon, 29 Jul 2019 13:04:06 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Monitoring-Splunk/Disabling-CBC-mode-ciphers/m-p/167546#M7841</guid>
      <dc:creator>hsesterhenn_spl</dc:creator>
      <dc:date>2019-07-29T13:04:06Z</dc:date>
    </item>
  </channel>
</rss>

