Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

...

Info

Even though AppBase provides helpful installation script commands to configure the protocols and ciphers - this is an operation system configuration and not AppBase configuration.

All the scripts do is configuring corresponding Windows Registry setting which is then requires server restart.

Please contact your IT department to configure protocols and ciphers both on client computers and the AppBase server computers.

Maintaining proper versions of SSL protocols and ciphers is responsibility of IT stuff.

You can try to use IIS Crypto software for on-prem installations as described here:

https://www.petri.com/cipher-best-practice-configure-iis-ssl-tls-protocol

 

Some protocols and ciphers are vulnerable and insecure (for example SSL3 and TLS1.0 protocols are vulnerable to POODLE attack). You need check what protocols and ciphers are used on your web-site.
To test the security you can use this web-site: https://www.ssllabs.com/ssltest/. Please navigate to this web-site and your web-site url - the url of the web-site you want to test.

...