Create a Post
cancel
Showing results for 
Search instead for 
Did you mean: 
Warren_T
Explorer

Disable Camelia Cipher on the firewall

Hello,

 

In the internal VA scan it is showing that the Camelia cipher is enabled on the firewall.Though we have checked from cipher_util command and observed that it is not showing in either enabled or disabled cipher list.

 

Let me know how we can disabled the cipher or any SK related to this cipher?

 

0 Kudos
2 Replies
G_W_Albrecht
Legend Legend
Legend

This is very, very strange - i never saw a Camelia cipher at all, and in multi_portal_cipher_priority.conf  or ssl_inspection_cipher_priority.conf (https://support.checkpoint.com/results/sk/sk126613) it can not be found on my R82 GW. 

You could try to add these to the  ":forbidden" section in the .conf files that contains the ciphers the Security Gateway will not accept, but that was for R80.10 and R80.20...

I would try a scan using a different product or ask CP in a SR#.

CCSP - CCSE / CCTE / CTPS / CCME / CCSM Elite / SMB Specialist
0 Kudos
_Val_
Admin
Admin

This is most probably a scanner false-positive. AFAIK, Camelia ciphers are not used by any of our products.  

0 Kudos

Leaderboard

Epsum factorial non deposit quid pro quo hic escorol.

Upcoming Events

    CheckMates Events