DX Unified Infrastructure Management

 View Only
  • 1.  SSL Version 2 and 3 Protocol Detection

    Posted Jun 19, 2020 03:43 PM
    Hi All,
    I have recently migrated UIM from Windows 2008 to Windows 2016 OS, but servers are listing after vulnerability scanning with below port and issue.
    Will you please help me here?

    Nimsoft Primary hub server 443 TCP SSL Version 2 and 3 Protocol Detection
    Nimsoft SQL server 1433 TCP SSL Version 2 and 3 Protocol Detection
    Nimsoft Secondary hub server 443 TCP SSL Version 2 and 3 Protocol Detection


  • 2.  RE: SSL Version 2 and 3 Protocol Detection

    Broadcom Employee
    Posted Jun 22, 2020 03:02 AM
    Hello Shubhojit, which release of UIM, hub and robot and SQL Server do you have ?

    Kind regards,
    Britta
    Broadcom Support


  • 3.  RE: SSL Version 2 and 3 Protocol Detection

    Posted Jun 22, 2020 03:11 AM

    My apologies, let me share those details.

    UIM : 9.0.2
    hub : 7.97HF6
    Robot : 9.97HF9
    SQL server : MSSQL 2008 (Tomorrow we will upgrade it to MSSQL 2016)




  • 4.  RE: SSL Version 2 and 3 Protocol Detection
    Best Answer

    Broadcom Employee
    Posted Jun 22, 2020 09:33 AM
    UIM does not listen on port 1433. this will be your database. Please contact your Database vendor about this.
    To use TLS with your back end SQL server you will be required to update to UIM 9.02 or higher.
    Please see the KB article on removing SSL v3 from tunnels.
    How to disable protocol SSL v3.0 completely in hub tunnels? (Knowledge Base Articles - 47006)
    https://ca-broadcom.wolkenservicedesk.com/external/article?articleId=47006

    ------------------------------
    Gene Howard
    Principal Support Engineer
    Broadcom
    ------------------------------