Completed a vulnerability study on our ESX 3.5 environment and its high lighted (SSL (Sercure Socket Layer) Server support weak encryption keys, which are defined as encryption keys with lengths of less 128 bits. Message encypted with weak encryption keys are relatively easy for an unauthorized user decrpt) on port 443.
I have looked at the VMware Secuirty Hardening document and it say that it Must always be available.
Should this be left allow, or is there anything I can do to correct this?
Thanks