- Access exclusive content
- Connect with peers
- Share your expertise
- Find support resources
05-21-2015 01:16 AM
Hi,
a new leak was found in diffie hellmann...
Is PaloAlto also affected? And is PaloAlto working on a threat signature?
06-25-2015 01:54 PM
We have signature for CVE-2015-4000. The threat ID number is 37756 (Export Diffie-Hellman Cipher Suite Found). This was released with the content update 502.
The attack is only effective when DHE_EXPORT cipher suite is effective.
PAN-OS doesn't use DHE_EXPORT. So PAN-OS is not vulnerable to this CVE.
05-21-2015 04:52 AM
Palo Alto is Aware of this , Engineering is researching on this and once there is an update it will be provided publicly .
05-21-2015 07:16 AM
how about a threat signature update to alert on logjam attempts... <queue jeopardy music>
06-25-2015 01:54 PM
We have signature for CVE-2015-4000. The threat ID number is 37756 (Export Diffie-Hellman Cipher Suite Found). This was released with the content update 502.
The attack is only effective when DHE_EXPORT cipher suite is effective.
PAN-OS doesn't use DHE_EXPORT. So PAN-OS is not vulnerable to this CVE.
06-28-2015 11:28 PM
Do you know what method for key exchange else DH to access mgmt web ?
Click Accept as Solution to acknowledge that the answer to your question has been provided.
The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!
These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!
The LIVEcommunity thanks you for your participation!