[BlueOnyx:18537] Re: SSL Help please

Colin Jack colin at mainline.co.uk
Sun Oct 18 16:05:15 -05 2015


I’m barking up the wrong tree aren’t I?
This is because 5106R still uses OpenSSL 1.0 which wasn’t compromised?
5107/8R were updated with patched RPMs by Michael but what about 5106R.

Help! :)

Colin




On 18/10/2015 21:46, "blueonyx-bounces at mail.blueonyx.it on behalf of Colin Jack" <blueonyx-bounces at mail.blueonyx.it on behalf of colin at mainline.co.uk> wrote:

>Some help for the clueless please? :)
>
>We have a website on a 5106R server which has a Thawte SSL123 certificate installed.
>Certficate has expired so I renewed and imported it to the website.
>I installed this okay the first time!
>
>Cert comes up as valid but …
>
>Your connection to london.co.uk is encrypted using an obsolete cipher suite. 
>Further, this page includes other resources which are not secure. 
>These resources can be viewed by others while in transit, and can be modified by an attacker to change the look of the page.
>
>The connection uses TLS 1.0.
>
>The connection is encrypted using AES_256_CBC, with HMAC-SHA1 for message authentication and DHE_RSA as the key exchange mechanism.
>
>
>I thought maybe I need to renew the intermediate certificates?
>That said I cannot remove the existing intermediates I have on there … in Certificate Authority Management I try and remove but nothing happens and when I try and add a new intermediate cert it also fails.
>
>I am not up to speed on SSL and I must be doing something dumb … can anybody help?
>
>Thanks
>
>Colin
>
>
>_______________________________________________
>Blueonyx mailing list
>Blueonyx at mail.blueonyx.it
>http://mail.blueonyx.it/mailman/listinfo/blueonyx




More information about the Blueonyx mailing list