{"id":4830,"date":"2023-07-12T10:29:46","date_gmt":"2023-07-12T17:29:46","guid":{"rendered":"https:\/\/SUMMALAI.COM\/?p=4830"},"modified":"2023-07-12T10:29:48","modified_gmt":"2023-07-12T17:29:48","slug":"how-to-disable-weak-cipher-suites-in-iis","status":"publish","type":"post","link":"https:\/\/SUMMALAI.COM\/?p=4830","title":{"rendered":"How to Disable Weak Cipher Suites in IIS"},"content":{"rendered":"\n<p>By default, IIS is installed with 2 weak SSL 2.0 cipher suites that are enabled:&nbsp;<em>SSL2_RC4_128_WITH_MD5<\/em>&nbsp;and&nbsp;<em>SSL2_DES_192_EDE3_CBC_WITH_MD5<\/em>. This can impact the security of AppScan Enterprise, and the cipher suites should be disabled.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\">Before you begin<\/h2>\n\n\n\n<p>Incorrectly editing the registry may severely damage your system. Before making changes to the registry, you should back up any valued data on your computer.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\">Procedure<\/h2>\n\n\n\n<ol class=\"wp-block-list\"><li>Open the Registry Editor (<strong>Start<\/strong>\u00a0>\u00a0<strong>Run<\/strong>\u00a0>\u00a0<strong>regedit<\/strong>).<\/li><li>In the\u00a0HKEY_LOCAL_MAC HINE\\SYSTEM\\CurrentControlSet\\Control\\SecurityProviders\\SCHANNEL\\Ciphers\u00a0directory:<ol type=\"a\"><li>Create a new key called\u00a0RC4 128\/128\u00a0(<strong>Ciphers<\/strong>\u00a0>\u00a0<strong>New<\/strong>\u00a0>\u00a0<strong>KeyRC4 128\/128<\/strong>).<\/li><li>Right-click the key&#8217;s name and create a new DWORD (32-bit) Value called &#8216;Enabled&#8217;. (<strong>New<\/strong>\u00a0>\u00a0<strong>DWORD (32-bit) Value<\/strong>\u00a0>\u00a0<strong>Enabled<\/strong>).<\/li><li>Leave the default value as &#8216;0&#8217;.<\/li><\/ol><\/li><li>In the\u00a0HKEY_LOCAL_MACHINE\\SYSTEM\\CurrentControlSet\\Control\\SecurityProviders\\SCHANNEL\\Hashes\u00a0directory:<ol type=\"a\"><li>Create a key called\u00a0MD5\u00a0(<strong>Hashes<\/strong>\u00a0>\u00a0<strong>New<\/strong>\u00a0>\u00a0<strong>Key<\/strong>\u00a0>\u00a0<strong>MD5<\/strong>).<\/li><li>Right-click the key&#8217;s name and create a new DWORD (32-bit) Value called &#8216;Enabled&#8217;. (<strong>New<\/strong>\u00a0>\u00a0<strong>DWORD (32-bit) Value<\/strong>\u00a0>\u00a0<strong>Enabled<\/strong>).<\/li><li>Leave the default value as &#8216;0&#8217;.<\/li><\/ol><\/li><li>Close the Registry Editor.<\/li><\/ol>\n\n\n\n<p>Ref: <a href=\"https:\/\/help.hcltechsw.com\/appscan\/Enterprise\/10.0.6\/topics\/t_disable_weak_cipher_suites_iis.html\">Disabling weak cipher suites in IIS (hcltechsw.com)<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>By default, IIS is installed with 2 weak SSL 2.0 cipher suites that are enabled:&nbsp;SSL2_RC4_128_WITH_MD5&nbsp;and&nbsp;SSL2_DES_192_EDE3_CBC_WITH_MD5. This can impact the security of AppScan Enterprise, and the cipher suites should be disabled. Before you begin Incorrectly editing the registry may severely damage your system. Before making changes to the registry, you should back up any valued data <a class=\"read-more\" href=\"https:\/\/SUMMALAI.COM\/?p=4830\">Read More<\/a><\/p>\n","protected":false},"author":2,"featured_media":0,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_bbp_topic_count":0,"_bbp_reply_count":0,"_bbp_total_topic_count":0,"_bbp_total_reply_count":0,"_bbp_voice_count":0,"_bbp_anonymous_reply_count":0,"_bbp_topic_count_hidden":0,"_bbp_reply_count_hidden":0,"_bbp_forum_subforum_count":0,"om_disable_all_campaigns":false,"_monsterinsights_skip_tracking":false,"_monsterinsights_sitenote_active":false,"_monsterinsights_sitenote_note":"","_monsterinsights_sitenote_category":0,"footnotes":""},"categories":[10,14,15],"tags":[1645],"class_list":["post-4830","post","type-post","status-publish","format-standard","hentry","category-microsoft","category-windows-7-8-10","category-windows-servers","tag-disable-weak-cipher-suites-in-iis"],"aioseo_notices":[],"_links":{"self":[{"href":"https:\/\/SUMMALAI.COM\/index.php?rest_route=\/wp\/v2\/posts\/4830","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/SUMMALAI.COM\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/SUMMALAI.COM\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/SUMMALAI.COM\/index.php?rest_route=\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/SUMMALAI.COM\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=4830"}],"version-history":[{"count":1,"href":"https:\/\/SUMMALAI.COM\/index.php?rest_route=\/wp\/v2\/posts\/4830\/revisions"}],"predecessor-version":[{"id":4831,"href":"https:\/\/SUMMALAI.COM\/index.php?rest_route=\/wp\/v2\/posts\/4830\/revisions\/4831"}],"wp:attachment":[{"href":"https:\/\/SUMMALAI.COM\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=4830"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/SUMMALAI.COM\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=4830"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/SUMMALAI.COM\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=4830"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}