Please whitelist cPanel in your adblocker so that you’re able to see our version release promotions, thanks!

The Community Forums

Interact with an entire community of cPanel & WHM users!

PCI compliance and BEAST

Discussion in 'Security' started by izghitu, Nov 26, 2012.

  1. izghitu

    izghitu Well-Known Member

    Joined:
    Aug 9, 2006
    Messages:
    52
    Likes Received:
    1
    Trophy Points:
    158
    Hi,

    I am trying to pass PCI compliance test on my cpanel/WHM server.

    I was able to fix everything for apache but it is still failing for cpanel ports and courier-imap ports. I am using stunnel for cpanel/whm

    Can someone please tell me how do I fix those?

    For courier-imap I am already using this:
    TLS_CIPHER_LIST="ECDHE-RSA-AES128-SHA256:AES128-GCM-SHA256:RC4:HIGH:!MD5:!aNULL:!EDH"

    and for stunnel:
    options = NO_SSLv2
    ciphers = ECDHE-RSA-AES128-SHA256:AES128-GCM-SHA256:RC4:HIGH:!MD5:!aNULL:!EDH

    but it did not help

    Please advise
     
  2. Infopro

    Infopro cPanel Sr. Product Evangelist
    Staff Member

    Joined:
    May 20, 2003
    Messages:
    16,585
    Likes Received:
    439
    Trophy Points:
    583
    Location:
    Pennsylvania
    cPanel Access Level:
    Root Administrator
    Twitter:
    Stop hovering to collapse... Click to collapse... Hover to expand... Click to expand...
  3. izghitu

    izghitu Well-Known Member

    Joined:
    Aug 9, 2006
    Messages:
    52
    Likes Received:
    1
    Trophy Points:
    158
  4. izghitu

    izghitu Well-Known Member

    Joined:
    Aug 9, 2006
    Messages:
    52
    Likes Received:
    1
    Trophy Points:
    158
    ok, it has been fixed using
    Code:
    RC4-SHA:RC4:HIGH:!MD5:!aNULL:!EDH:!ADH:!AESGCM:!AES:!DES-CBC3-SHA:!CAMELLIA256-SHA:!CAMELLIA128-SHA:!AES256-SHA
    
    Thanks
     
Loading...

Share This Page

  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.
    Dismiss Notice