Network Management

Sweet32 and SolarWinds Platform products - CVE-2016-2183 and CVE-2016-6329

Sweet32 and patching vulnerabilities in SolarWinds Platform products (CVE-2016-2183 and CVE-2016-6329).

First published date

11/14/2018 10:09 PM

Last published date

7/10/2025 11:36 PM

Overview

Sweet32 is a vulnerability in 3DES-CBC ciphers that attacks 64-bit block ciphers in TLS and OpenVPN.

https://cve.mitre.org/cgi-bin/cvenam...=CVE-2016-2183 

https://cve.mitre.org/cgi-bin/cvenam...=CVE-2016-6329 
 

Product section

Orion Platform

Resolution

There is no impact on basic functionality when disabling 3DES cipher suites in SolarWinds Platform 2019.4 and above.

  1. Upgrade to SolarWinds Platform 2019.4 or above.
  2. Log in to the SolarWinds server as an administrator.
  3. Download and install IIS Crypto from Nartac. 
  4. Open the tool.
  5. Select Schannel, and clear the Triple DES 168 selection.
  6. Apply changes and restart the computer.

For more information about our recommended secure configuration for SolarWinds Platform, please refer to the following documentation .