Schneider Electric support forum about installation and configuration for DCIM including EcoStruxure IT Expert, IT Advisor, Data Center Expert, and NetBotz
Send a co-worker an invite to the portal.Just enter their email address and we'll connect them to register. After joining, they will belong to the same company.
You have entered an invalid email address. Please re-enter the email address.
This co-worker has already been invited to the Exchange portal. Please invite another co-worker.
Please enter email address
Send InviteCancel
Invitation Sent
Your invitation was sent.Thanks for sharing Exchange with your co-worker.
Link copied. Please paste this link to share this article on your social media post.
Posted: 2020-05-2209:20 AM
DCO v8.0.2 "SSH Weak Algorithms Supported"
A vulnerability Scan has picked up the following Vulnerabilities with my DCO Server v8.0.2 :
SSH Server CBC Mode Ciphers Enabled
SSH Weak MAC Algorithms Enabled
SSH Weak Algorithms Supported
I intend to upgrade the Server to DCO v8.3.2 to address certain vulnerabilities however I wish to know if there are certain configurations I need to perfom to address the above mentioned Vulnerabilities or the latest version of DCO has these issues already addressed?
Link copied. Please paste this link to share this article on your social media post.
Posted: 2020-05-2609:54 AM
Hello.
Upgrading your DCO installation should address the security issues you have noted in your post. DCO 8.0.2 is quite old and has received a number of security improvements since that timeframe.
Ciphers are updated and the more recent releases can be configured to accept only TLSv1.2 connections.
Link copied. Please paste this link to share this article on your social media post.
Posted: 2020-05-2609:54 AM
Hello.
Upgrading your DCO installation should address the security issues you have noted in your post. DCO 8.0.2 is quite old and has received a number of security improvements since that timeframe.
Ciphers are updated and the more recent releases can be configured to accept only TLSv1.2 connections.