Re: SSLV3 and cookies
Emanuele Faranda <[email protected]>
| Newsgroups | gmane.linux.ntop.general |
|---|---|
| Message-ID | <[email protected]> |
Hi, I've created a new issue with the SSLv3 information. Please check out https://github.com/ntop/ntopng/issues/1484 The relevant files are HTTPServer.cpp and mongoose.c Emanuele On Tue, Sep 26, 2017 at 4:43 PM, Tim Wolak <[email protected]> wrote: > Thank you Emanuele, Can you please tell me the file location so I can > make the correction. Also how do you disable SSLV3? > > Thanks, > Tim > > From: <[email protected]> on behalf of Emanuele > Faranda <[email protected]> > Reply-To: <[email protected]> > Date: Tuesday, September 26, 2017 at 9:04 AM > To: <[email protected]> > Cc: <[email protected]> > Subject: Re: [Ntop] SSLV3 and cookies > > Hi Tim, > > Please follow the issue on our github page > https://github.com/ntop/ntopng/issues/1483 > > Thank you for reporting! > Emanuele > > On Tue, Sep 26, 2017 at 1:53 PM, Tim Wolak <[email protected]> > wrote: > >> Hi all, >> >> After running a vulnerability scan it came back that ntop has SSLV3 >> enabled and SSL/TLS is missing the secure cookie attribute. Which >> files would I edit to take care of these? >> >> Thanks in Advance! >> >> >> >> > _______________________________________________ Ntop mailing list > [email protected] > http://listgateway.unipi.it/mailman/listinfo/ntop _______________________________________________ Ntop mailing list [email protected] http://listgateway.unipi.it/mailman/listinfo/ntop