Skip to main content
bear
New Member
May 13, 2019
Question

Remove weak SSL cipher suite for Fortigate 2000E v5.6

  • May 13, 2019
  • 1 reply
  • 2131 views
When security audit, SSL ciphers supported include DHE-RSA-AES128-SHA. AES-CBC-128 and SHA1 need to be removed. Can I use CLI set banned-cipher to remove weak SSL cipher suite?

    1 reply

    abarushka
    Staff
    Staff
    September 21, 2022

    Hello,

     

    Can you please elaborate how the test was conducted (i.e. did you receive weak cipher suite while trying to access SSL VPN, FortiGate management, etc.)?