On Windows Server 2003 how do I remediate Nessus IDs 26928 and 31705.  I¹ve
already changed these entries at
SYSTEM\CurrentControlSet\Control\SecurityProvidersSCHANNEL\Ciphers to
Enabled = 0:

DES 56/56
NULL
RC2 40/128
RC4 40/128
RC4 56/128

I¹ve also changed these entries at SCHANNEL\Protocols to Enabled = 0:

PCT 1.0\Client
PCT 1.0\Server
SSL 2.0\Client
SSL 2.0\Server

And the vulnerabilities are still reported.

The information transmitted is intended only for the person or entity to
which it is addressed and may contain confidential and/or privileged
material.  If the reader of this message is not the intended recipient,
you are hereby notified that your access is unauthorized, and any review,
dissemination, distribution or copying of this message including any
attachments is strictly prohibited.   If you are not the intended
recipient, please contact the sender and delete the material from any
computer.
_______________________________________________
Nessus mailing list
[email protected]
http://mail.nessus.org/mailman/listinfo/nessus

Reply via email to