Network Management

Vulnerability Tool scan report: SSL Certificate Signed Using Weak Hashing Algorithm

This article will provide a recommendation regarding the vulnerability report for SSL Certificate Signed using Weak Hashing algorithm.

First published date

10/11/2018 9:03 PM

Last published date

12/23/2022 2:33 PM

Overview

This article regards the vulnerability report for SSL Certificate Signed using Weak Hashing algorithm.

Product section

Orion Platform

Resolution

This is by design. Since a self-signed certificate does not provide virtually any protection regardless of the hashing algorithm used, we do not update its properties regularly.

Customers should always use their own certificate, we are only shipping our own so that the connections are not HTTP-only.

As a recommendation, you may use your own SSL certificate to be use for https. The SSL certificate that is being generated is only to allow you utilize the HTTPS during setup.

And certificate will be under 
Certificates - Local Computer
and under these two folders
- Personal Certificate
- Trusted Root Certificate Authority
With Intended purpose as Server Authentication, Client Authentication