TLS Unsecured
complete
D
Donny McGregor
Currently running a trial with Guardz and using google workspace , we discovered that our scan was picking up Daydesk Supporting TLS 1.0 or 1.1 (which are officially deprecated).
Supporting Weak Ciphers like Triple DES (3DES) or RC4.
Lacking Forward Secrecy, which protects past communications even if a server key is stolen.
B
BASIL
updated the status to
complete
B
BASIL
updated the status to
in progress
B
BASIL
We've updated our infrastructure, and these issues have already been resolved. Our current SSL configuration supports only modern TLS versions and strong cipher suites. Our endpoint currently receives an A+ rating on SSL Labs, with TLS 1.3 and HSTS enabled.
If Guardz is still reporting these findings, could you please run a fresh scan or share the latest report? Also, please let us know the exact hostname and port that Guardz scanned. We'd be happy to review the results and investigate further.
Photo Viewer
View photos in a modal