SMB 14xx with VPN Remote Access enabled had a Security Scan performed that found the following vulnerabilities:
"'Vulnerable' cipher suites accepted by this service via the TLSv1.2 protocol:
TLS_RSA_WITH_3DES_EDE_CBC_SHA (SWEET32)"
"'Weak' cipher suites accepted by this service via the TLSv1.2 protocol:
TLS_RSA_WITH_RC4_128_MD5
TLS_RSA_WITH_RC4_128_SHA"
According to sk162794, ciphers and MACs can not be restricted on SMBs, but sk104095 helped a lot !
CCSP - CCSE / CCTE / CTPS / CCME / CCSM Elite / SMB Specialist