-
Type:
Enhancement
-
Status:
Closed
-
Priority:
Medium
-
Resolution:
Unresolved
-
-
-
Module:
BenAdmin
- Security
-
-
Item State:
Production Complete
- Closed
Vulnerability Description
Transport Layer Security (TLS) version 1.0 has been found to contain protocol-level weaknesses.
Impact
Given the theoretical nature of attacks on TLS 1.0, supporting TLS 1.0 is not a risk-oriented decision. That being said, history has shown that as cryptographic attacks age, they get stronger (i.e. easier to exploit).
Verification and Attack Information
Praetorian verified the TLS v1.0 protocol was enabled on the application server using SSLScan, an automated SSL/TLS scanning tool. The application server accepted the TLS v1.0 protocol, as shown in the images below.
Recommendation
Praetorian recommends following Mozilla’s SSL/TLS (see reference below) configuration suggestions as a guide for ciphersuite support. These configurations provide high-security and high-availability to SSL/TLS clients.
References
https://mozilla.github.io/server-side-tls/ssl-config-generator/
https://cipherli.st/
https://www.wolfssl.com/wolfSSL/Blog/Entries/2010/12/14_A_Comparison_of_TLS_1.1_and_TLS_1.2.html
{"report":{"apdex":1,"isInitial":true,"journeyId":"d643d9d6-b48f-438e-82ae-d843c565f49d","key":"jira.project.issue.view-issue","navigationType":0,"readyForUser":592.8000000119209,"redirectCount":0,"resourceLoadedEnd":840.5,"resourceLoadedStart":122.80000001192093,"resourceTiming":[{"duration":37.299999952316284,"initiatorType":"link","name":"https://jira.workterra.net/s/3003653444a1e1a85555cab7dcfb3a21-CDN/-w431t5/805012/9a9e1fae3639050b38ac467c3aa37e79/2e46d90b5cae895c9c38649c9d510130/_/download/contextbatch/css/_super/batch.css","startTime":122.80000001192093,"connectEnd":0,"connectStart":0,"domainLookupEnd":0,"domainLookupStart":0,"fetchStart":122.80000001192093,"redirectEnd":0,"redirectStart":0,"requestStart":0,"responseEnd":160.0999999642372,"responseStart":0,"secureConnectionStart":0},{"duration":38,"initiatorType":"link","name":"https://jira.workterra.net/s/dd6a0911920485696ac20493290df627-CDN/-w431t5/805012/9a9e1fae3639050b38ac467c3aa37e79/3abe50d469404b639745df44b51476b6/_/download/contextbatch/css/jira.browse.project,jira.view.issue,project.issue.navigator,jira.global,atl.general,-_super/batch.css?agile_global_admin_condition=true&jag=true&jira.create.linked.issue=true&richediton=true","startTime":123,"connectEnd":0,"connectStart":0,"domainLookupEnd":0,"domainLookupStart":0,"fetchStart":123,"redirectEnd":0,"redirectStart":0,"requestStart":0,"responseEnd":161,"responseStart":0,"secureConnectionStart":0},{"duration":38,"initiatorType":"link","name":"https://jira.workterra.net/s/d41d8cd98f00b204e9800998ecf8427e-CDN/-w431t5/805012/9a9e1fae3639050b38ac467c3aa37e79/8.5.0/_/download/batch/com.atlassian.auiplugin:split_aui.pattern.label/com.atlassian.auiplugin:split_aui.pattern.label.css","startTime":123.09999996423721,"connectEnd":0,"connectStart":0,"domainLookupEnd":0,"domainLookupStart":0,"fetchStart":123.09999996423721,"redirectEnd":0,"redirectStart":0,"requestStart":0,"responseEnd":161.0999999642372,"responseStart":0,"secureConnectionStart":0},{"duration":39.10000002384186,"initiatorType":"link","name":"https://jira.workterra.net/s/bd548f27bbf8f278bd83b60dd3284ed8-CDN/-w431t5/805012/9a9e1fae3639050b38ac467c3aa37e79/1.0/_/download/batch/jira.webresources:global-static-adgs/jira.webresources:global-static-adgs.css","startTime":123.19999998807907,"connectEnd":0,"connectStart":0,"domainLookupEnd":0,"domainLookupStart":0,"fetchStart":123.19999998807907,"redirectEnd":0,"redirectStart":0,"requestStart":0,"responseEnd":162.30000001192093,"responseStart":0,"secureConnectionStart":0},{"duration":39.19999998807907,"initiatorType":"link","name":"https://jira.workterra.net/s/70725731a158a7140f19ddbd4201ba27-CDN/-w431t5/805012/9a9e1fae3639050b38ac467c3aa37e79/1.0/_/download/batch/jira.webresources:global-static/jira.webresources:global-static.css","startTime":123.19999998807907,"connectEnd":0,"connectStart":0,"domainLookupEnd":0,"domainLookupStart":0,"fetchStart":123.19999998807907,"redirectEnd":0,"redirectStart":0,"requestStart":0,"responseEnd":162.39999997615814,"responseStart":0,"secureConnectionStart":0},{"duration":89.19999998807907,"initiatorType":"script","name":"https://jira.workterra.net/s/f2623af22c15df767ec6ff268ae0b8bd-CDN/-w431t5/805012/9a9e1fae3639050b38ac467c3aa37e79/2e46d90b5cae895c9c38649c9d510130/_/download/contextbatch/js/_super/batch.js?locale=en-US","startTime":123.30000001192093,"connectEnd":123.30000001192093,"connectStart":123.30000001192093,"domainLookupEnd":123.30000001192093,"domainLookupStart":123.30000001192093,"fetchStart":123.30000001192093,"redirectEnd":0,"redirectStart":0,"requestStart":123.30000001192093,"responseEnd":212.5,"responseStart":212.5,"secureConnectionStart":123.30000001192093},{"duration":115,"initiatorType":"script","name":"https://jira.workterra.net/s/6ce676f2a5bcc9651cef6e7956f05def-CDN/-w431t5/805012/9a9e1fae3639050b38ac467c3aa37e79/3abe50d469404b639745df44b51476b6/_/download/contextbatch/js/jira.browse.project,jira.view.issue,project.issue.navigator,jira.global,atl.general,-_super/batch.js?agile_global_admin_condition=true&jag=true&jira.create.linked.issue=true&locale=en-US&richediton=true","startTime":123.39999997615814,"connectEnd":123.39999997615814,"connectStart":123.39999997615814,"domainLookupEnd":123.39999997615814,"domainLookupStart":123.39999997615814,"fetchStart":123.39999997615814,"redirectEnd":0,"redirectStart":0,"requestStart":123.39999997615814,"responseEnd":238.39999997615814,"responseStart":238.39999997615814,"secureConnectionStart":123.39999997615814},{"duration":117.90000003576279,"initiatorType":"script","name":"https://jira.workterra.net/s/ecf7ec549751ae117b778f0525d6d371-CDN/-w431t5/805012/9a9e1fae3639050b38ac467c3aa37e79/4.1.5/_/download/resources/com.atlassian.plugins.atlassian-chaperone:hotspot-tour/hotspot-tour.js?batch=false&locale=en-US","startTime":123.59999996423721,"connectEnd":123.59999996423721,"connectStart":123.59999996423721,"domainLookupEnd":123.59999996423721,"domainLookupStart":123.59999996423721,"fetchStart":123.59999996423721,"redirectEnd":0,"redirectStart":0,"requestStart":123.59999996423721,"responseEnd":241.5,"responseStart":241.5,"secureConnectionStart":123.59999996423721},{"duration":118.40000003576279,"initiatorType":"script","name":"https://jira.workterra.net/s/6aa3fcf1fac5fd551eee0b69077524e6-CDN/-w431t5/805012/9a9e1fae3639050b38ac467c3aa37e79/aae1242f5fc81cc6a5bb8bc963ccda29/_/download/contextbatch/js/atl.global,-_super/batch.js?locale=en-US","startTime":123.59999996423721,"connectEnd":123.59999996423721,"connectStart":123.59999996423721,"domainLookupEnd":123.59999996423721,"domainLookupStart":123.59999996423721,"fetchStart":123.59999996423721,"redirectEnd":0,"redirectStart":0,"requestStart":123.59999996423721,"responseEnd":242,"responseStart":242,"secureConnectionStart":123.59999996423721},{"duration":118.69999998807907,"initiatorType":"script","name":"https://jira.workterra.net/s/d41d8cd98f00b204e9800998ecf8427e-CDN/-w431t5/805012/9a9e1fae3639050b38ac467c3aa37e79/1.0/_/download/batch/jira.webresources:calendar-en/jira.webresources:calendar-en.js","startTime":123.80000001192093,"connectEnd":123.80000001192093,"connectStart":123.80000001192093,"domainLookupEnd":123.80000001192093,"domainLookupStart":123.80000001192093,"fetchStart":123.80000001192093,"redirectEnd":0,"redirectStart":0,"requestStart":123.80000001192093,"responseEnd":242.5,"responseStart":242.5,"secureConnectionStart":123.80000001192093},{"duration":119,"initiatorType":"script","name":"https://jira.workterra.net/s/d41d8cd98f00b204e9800998ecf8427e-CDN/-w431t5/805012/9a9e1fae3639050b38ac467c3aa37e79/1.0/_/download/batch/jira.webresources:calendar-localisation-moment/jira.webresources:calendar-localisation-moment.js","startTime":123.80000001192093,"connectEnd":123.80000001192093,"connectStart":123.80000001192093,"domainLookupEnd":123.80000001192093,"domainLookupStart":123.80000001192093,"fetchStart":123.80000001192093,"redirectEnd":0,"redirectStart":0,"requestStart":123.80000001192093,"responseEnd":242.80000001192093,"responseStart":242.80000001192093,"secureConnectionStart":123.80000001192093},{"duration":119.40000003576279,"initiatorType":"script","name":"https://jira.workterra.net/s/ecf7ec549751ae117b778f0525d6d371-CDN/-w431t5/805012/9a9e1fae3639050b38ac467c3aa37e79/8.5.0/_/download/batch/com.atlassian.auiplugin:split_aui.pattern.label/com.atlassian.auiplugin:split_aui.pattern.label.js?locale=en-US","startTime":123.89999997615814,"connectEnd":123.89999997615814,"connectStart":123.89999997615814,"domainLookupEnd":123.89999997615814,"domainLookupStart":123.89999997615814,"fetchStart":123.89999997615814,"redirectEnd":0,"redirectStart":0,"requestStart":123.89999997615814,"responseEnd":243.30000001192093,"responseStart":243.30000001192093,"secureConnectionStart":123.89999997615814},{"duration":119.80000001192093,"initiatorType":"link","name":"https://jira.workterra.net/s/05c862146699bb029ceb0a489075e63b-CDN/-w431t5/805012/9a9e1fae3639050b38ac467c3aa37e79/bcd66e9a133a1b9f5fd14b56841e1c5b/_/download/contextbatch/css/jira.global.look-and-feel,-_super/batch.css","startTime":124,"connectEnd":0,"connectStart":0,"domainLookupEnd":0,"domainLookupStart":0,"fetchStart":124,"redirectEnd":0,"redirectStart":0,"requestStart":0,"responseEnd":243.80000001192093,"responseStart":0,"secureConnectionStart":0},{"duration":119.70000004768372,"initiatorType":"script","name":"https://jira.workterra.net/rest/api/1.0/shortcuts/805012/ea6f30d2bfdc99578bb23f4a5bac3ecd/shortcuts.js?context=issuenavigation&context=issueaction","startTime":124.09999996423721,"connectEnd":124.09999996423721,"connectStart":124.09999996423721,"domainLookupEnd":124.09999996423721,"domainLookupStart":124.09999996423721,"fetchStart":124.09999996423721,"redirectEnd":0,"redirectStart":0,"requestStart":124.09999996423721,"responseEnd":243.80000001192093,"responseStart":243.80000001192093,"secureConnectionStart":124.09999996423721},{"duration":120.89999997615814,"initiatorType":"link","name":"https://jira.workterra.net/s/9095228fa10daa2d3e3d7d5760c95e91-CDN/-w431t5/805012/9a9e1fae3639050b38ac467c3aa37e79/72477c22780abda5f51fe696920d843f/_/download/contextbatch/css/com.atlassian.jira.projects.sidebar.init,-_super,-jira.view.issue,-project.issue.navigator/batch.css?jira.create.linked.issue=true&richediton=true","startTime":124.19999998807907,"connectEnd":0,"connectStart":0,"domainLookupEnd":0,"domainLookupStart":0,"fetchStart":124.19999998807907,"redirectEnd":0,"redirectStart":0,"requestStart":0,"responseEnd":245.0999999642372,"responseStart":0,"secureConnectionStart":0},{"duration":120.30000001192093,"initiatorType":"script","name":"https://jira.workterra.net/s/c19a1b46e985d7fb85efaf27c8febfdd-CDN/-w431t5/805012/9a9e1fae3639050b38ac467c3aa37e79/72477c22780abda5f51fe696920d843f/_/download/contextbatch/js/com.atlassian.jira.projects.sidebar.init,-_super,-jira.view.issue,-project.issue.navigator/batch.js?jira.create.linked.issue=true&locale=en-US&richediton=true","startTime":124.19999998807907,"connectEnd":124.19999998807907,"connectStart":124.19999998807907,"domainLookupEnd":124.19999998807907,"domainLookupStart":124.19999998807907,"fetchStart":124.19999998807907,"redirectEnd":0,"redirectStart":0,"requestStart":124.19999998807907,"responseEnd":244.5,"responseStart":244.5,"secureConnectionStart":124.19999998807907}],"threshold":1000,"fetchStart":0,"domainLookupStart":0,"domainLookupEnd":0,"connectStart":0,"connectEnd":0,"requestStart":54,"responseStart":117,"responseEnd":118,"domLoading":120,"domInteractive":859,"domContentLoadedEventStart":859,"domContentLoadedEventEnd":900,"domComplete":1282,"loadEventStart":1282,"loadEventEnd":1285,"userAgent":"Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; ClaudeBot/1.0; +claudebot@anthropic.com)","marks":[],"measures":[],"correlationId":"7ce5196b53da3d","effectiveType":"4g","downlink":10,"rtt":0,"serverDuration":31,"dbReadsTimeInMs":3,"dbConnsTimeInMs":3,"applicationHash":"156decd7d2b4272533aa6cefc8294af635e1da97","experiments":[]}}
"IE 8.0 and IE 9.0 compatibilty should be removed.
Business need, As of not to be considered.
By design"