Do not input private or sensitive data. View Qlik Privacy & Cookie Policy.
Skip to main content

Announcements
ALERT: QlikView server communication interruptions following Microsoft Windows Domain Controller security updates

Protection against the SSL / TLS vulnerabilities caused by outdated ciphers/protocols

No ratings
cancel
Showing results for 
Search instead for 
Did you mean: 
ToniKautto
Employee
Employee

Protection against the SSL / TLS vulnerabilities caused by outdated ciphers/protocols

Last Update:

Feb 23, 2022 3:11:21 AM

Updated By:

ToniKautto

Created date:

Feb 23, 2022 3:11:21 AM

Qlik Sense Enterprise on Windows and QlikView inherit the available protocols, cipher suites, key exchanges, and other security hardenings which are enabled on the Windows Server operating system.

This means that protection against known vulnerabilities caused by outdated ciphers/protocols can be mitigated by hardening the Windows Server OS. 

Example of know cipher protocol vulnerabilities;

  • SWEET 32
  • Lucky 13

Note, Windows Server restart is required for a full effect of security hardening, which also includes if they are pushed to the server through Group Policy. 

It is important to test and verify that all the software running on the server is still fully functional after completing gardening. For this reason, it is highly recommended to apply hardening in a UAT or staging environment before promoting to production servers. 

 

Environment

  • QlikView, all versions
  • Qlik Sense Enterprise on Windows, all versions

Related Content 

Contributors
Version history
Last update:
‎2022-02-23 03:11 AM
Updated by: