SonicWALL - SSL Control - Detect SSLv2

Information

Controls detection of SSLv2 exchanges. SSLv2 is known to be susceptible to cipher downgrade attacks because it does not perform integrity checking on the handshake. Best practices recommend using SSLv3 or TLS in its place.

Solution

Navigate to Firewall Settings->SSL Control->Configuration and set 'Detect SSLv2' to true.

Item Details

Category: SYSTEM AND INFORMATION INTEGRITY

References: 800-53|SI-4

Plugin: SonicWALL

Control ID: b1f00bfb79d34dfe30430894f1e6f8982526ceb368cba82066bd7e157345658c