VMware Cloud Community
Anafp
Enthusiast
Enthusiast

VCenter disable medium / weak ciphers

Hello,

I got a vulnerability scan report that states medium / weak ciphers are used on port 10109 (vCenter Inventory Service Service Management).

I have seen this article -> VMware KB: During a security scan, VMware vCenter Server 5.x reports a warning for port 10109 but it does not apply in my case as the ports are already open.

So, is there a way to force strong ciphers in VCenter. I am using VCenter 5.0.

Thanks.

Reply
0 Kudos
2 Replies
MyuFox
Enthusiast
Enthusiast

Update to 5.1U2 which uses strong ciphers.

Reply
0 Kudos
Anafp
Enthusiast
Enthusiast

Actually I blocked the ports and till now I don't see any problem with that... I somehow believe that the KB article is not correctly written. The firewall must be enabled and not disabled since the vulnerability scan already takes place...

Reply
0 Kudos