- Products
- Learn
- Local User Groups
- Partners
- More
MVP 2026: Submissions
Are Now Open!
What's New in R82.10?
Watch NowOverlap in Security Validation
Help us to understand your needs better
CheckMates Go:
Maestro Madness
Hi All,
I have disabled tls v1 and v1.1 from my firewalls , but during a recent pen test it found an issue "Insecure SSL/TLS Protocols - LOW - External".
I have used show ssl tls enabled command and can see only tls v1.2 is enabled.
Can you help with some other commands to check further or what could cause this issue to pop up during pen test ?
You disabled via CLI? Maybe also check sk154532 depending on the port / service reported by the scan.
Hello,
Can you see what you have here in global properties in smart console?
Andy
You might need to disable some ciphers even though TLS 1.2 is the only thing enabled; we had something similar happen with our pen test.
sk126613 - Cipher configuration tool 'cipher_util' for Security Gateways
We "passed" using this configuration:
And you can test it, one-by-one too 🙂
openssl s_client -cipher 'ECDHE-ECDSA-AES256-SHA' -connect secureurl:443
Just tried with google.com, super useful command!
Andy
Leaderboard
Epsum factorial non deposit quid pro quo hic escorol.
| User | Count |
|---|---|
| 19 | |
| 17 | |
| 14 | |
| 8 | |
| 7 | |
| 3 | |
| 3 | |
| 3 | |
| 3 | |
| 2 |
Tue 16 Dec 2025 @ 05:00 PM (CET)
Under the Hood: CloudGuard Network Security for Oracle Cloud - Config and Autoscaling!Thu 18 Dec 2025 @ 10:00 AM (CET)
Cloud Architect Series - Building a Hybrid Mesh Security Strategy across cloudsTue 16 Dec 2025 @ 05:00 PM (CET)
Under the Hood: CloudGuard Network Security for Oracle Cloud - Config and Autoscaling!Thu 18 Dec 2025 @ 10:00 AM (CET)
Cloud Architect Series - Building a Hybrid Mesh Security Strategy across cloudsAbout CheckMates
Learn Check Point
Advanced Learning
YOU DESERVE THE BEST SECURITY