Troubleshooting
Problem
Customer recently received a report that the server is supporting weak Diffie–Hellman cipher suites across their environments. Minimum cipher/prime must be 2048 bits. More information about Weak Diffie–Hellman: https://weakdh.org/
The remediation steps recommended by the cyber security team involves us editing the server.xml file to include connector to disable these weak ciphers.
URL reference: https://weakdh.org/sysadmin.html (please see Apache Tomcat for more details on the parameter details)
They have applied these under this file path: <SoftwareAG>/profiles/LJP/configurations/tomcat/conf/server.xml
However, it is not working.
Document Location
Worldwide
Log InLog in to view more of this document
Was this topic helpful?
Document Information
Modified date:
20 March 2025
UID
ibm17204605