CloudLink:安全扫描程序报告 CloudLink 中的弱 SSL/TLS 密钥交换
Summary: CloudLink:安全扫描程序报告 CloudLink 中的弱 SSL/TLS 密钥交换。
This article applies to
This article does not apply to
This article is not tied to any specific product.
Not all product versions are identified in this article.
Symptoms
CloudLink 7.1.0
安全扫描程序:
安全扫描程序:
PROTOCOL CIPHER NAME GROUP KEY-SIZE FORWARD-SECRET CLASSICAL-STRENGTH QUANTUM-STRENGTH TLSv1.2 ECDHE-RSA-AES256-SHA384 ECDHE ServerName 192 yes 96 low TLSv1.2 ECDHE-RSA-AES256-SHA384 ECDHE ServerName 163 yes 81 low Change the SSL/TLS server configuration to only allow strong key exchanges. Key exchanges should provide at least 112 bits of security, which translates to a minimum key size of 2048 bits for Diffie Hellman and RSA key exchanges or 224 bits for Elliptic Curve Diffie Hellman key exchanges.QID-38863
Cause
较旧版本的 CloudLink 使用较弱的密码。
Resolution
要解决此问题,请将 CloudLink 升级到 7.1.7 或更高版本。建议使用 CloudLink 7.1.9,因为这是升级到版本 8.x 所必需的。
CloudLink 7.1.3 及更高版本,webTLS 支持以下密码:
查看 CloudLink 升级指南中的升级过程。https://www.dell.com/support/product-details/en-us/product/cloudlink-securevm/docs
CloudLink 7.1.3 及更高版本,webTLS 支持以下密码:
"TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384" "TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA384"
查看 CloudLink 升级指南中的升级过程。https://www.dell.com/support/product-details/en-us/product/cloudlink-securevm/docs
Affected Products
CloudLinkProducts
CloudLink SecureVMArticle Properties
Article Number: 000216707
Article Type: Solution
Last Modified: 05 Sept 2025
Version: 4
Find answers to your questions from other Dell users
Support Services
Check if your device is covered by Support Services.