Uploaded image for project: 'Puppet Server'
  1. Puppet Server
  2. SERVER-2913

Remove deprecated cipher suites

    XMLWordPrintable

    Details

    • Type: Improvement
    • Status: Resolved
    • Priority: Normal
    • Resolution: Done
    • Affects Version/s: None
    • Fix Version/s: SERVER 7.0.0
    • Component/s: None
    • Labels:
      None
    • Template:
    • Team:
      Froyo
    • Story Points:
      1
    • Sprint:
      Froyo - 11/16/2020
    • Release Notes:
      Enhancement
    • Release Notes Summary:
      Removes many default cipher suites from use when contacting Puppet Server, may break old on very old platforms. Brings FOSS into modern best practices and in alignment with PE.
    • QA Risk Assessment:
      Needs Assessment

      Description

      In Server 6.5 we upgrade to a Jetty version that began warning when weak cipher suites were used. Unfortunately, many of the cipher suites used by default in the 6.x series cause these warnings to be issued. In Puppet 7 we should restrict ourselves to only the cipher suites that Jetty considers strong.

        Attachments

          Issue Links

            Activity

              People

              Assignee:
              justin Justin Stoller
              Reporter:
              justin Justin Stoller
              Votes:
              0 Vote for this issue
              Watchers:
              1 Start watching this issue

                Dates

                Created:
                Updated:
                Resolved:

                  Zendesk Support