New Logjam Attack

Reply
L4 Transporter
Highlighted
L0 Member

Re: New Logjam Attack

Palo Alto is Aware of this , Engineering is researching on this and once there is an update it will be provided publicly .

L3 Networker

Re: New Logjam Attack

how about a threat signature update to alert on logjam attempts... <queue jeopardy music>

L3 Networker

Re: New Logjam Attack

We have signature for CVE-2015-4000. The threat ID number is 37756 (Export Diffie-Hellman Cipher Suite Found). This was released with the content update 502. 

The attack is only effective when DHE_EXPORT cipher suite is effective. 

PAN-OS doesn't use DHE_EXPORT. So PAN-OS is not vulnerable to this CVE.

L4 Transporter

Re: New Logjam Attack

Do you know what method for key exchange else DH to access mgmt web ?

Like what you see?

Show your appreciation!

Click Like if a post is helpful to you or if you just want to show your support.

Click Accept as Solution to acknowledge that the answer to your question has been provided.

The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!

These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the Live Community as a whole!

The Live Community thanks you for your participation!