Hi M@he$h,
I was following http://techcommunity.softwareag.com/web/guest/pwiki/-/wiki/Main/Debugging+TLS+SSL+connections+in+Integration+Server to turn on logging TLS connection, so I could confirm using TLSv1.2.
Using soap connector there were logs in wrapper.log indicating ssl:
INFO | jvm 11 | 2018/02/15 17:12:49 | ssl_debug(1): Starting handshake (iSaSiLk 3.03)...
INFO | jvm 11 | 2018/02/15 17:12:49 | ssl_debug(1): Remote client:194.99.117.17:443, Timestamp:Thu Feb 15 17:12:49 CET 2018
INFO | jvm 11 | 2018/02/15 17:12:49 | ssl_debug(1): Sending secure renegotiation cipher suite
INFO | jvm 11 | 2018/02/15 17:12:49 | ssl_debug(1): Sending v3 client_hello message, requesting version 3.1...
INFO | jvm 11 | 2018/02/15 17:12:49 | ssl_debug(1): Received v3 server_hello handshake message.
INFO | jvm 11 | 2018/02/15 17:12:49 | ssl_debug(1): Server selected SSL version 3.1.
INFO | jvm 11 | 2018/02/15 17:12:49 | ssl_debug(1): Server created new session E1:CD:BB:DE:A5:C0:1E:F3...
INFO | jvm 11 | 2018/02/15 17:12:49 | ssl_debug(1): CipherSuite selected by server: TLS_RSA_WITH_AES_128_CBC_SHA
INFO | jvm 11 | 2018/02/15 17:12:49 | ssl_debug(1): CompressionMethod selected by server: NULL
INFO | jvm 11 | 2018/02/15 17:12:49 | ssl_debug(1): Received certificate handshake message with server certificate.
INFO | jvm 11 | 2018/02/15 17:12:49 | ssl_debug(1): Server sent a 2048 bit RSA certificate, chain has 3 elements.
INFO | jvm 11 | 2018/02/15 17:12:49 | ssl_debug(1): Received server_hello_done handshake message.
INFO | jvm 11 | 2018/02/15 17:12:49 | ssl_debug(1): Sending client_key_exchange handshake message (2048 bit)...
INFO | jvm 11 | 2018/02/15 17:12:49 | ssl_debug(1): Sending change_cipher_spec message...
INFO | jvm 11 | 2018/02/15 17:12:49 | ssl_debug(1): Sending finished message...
INFO | jvm 11 | 2018/02/15 17:12:49 | ssl_debug(1): Received change_cipher_spec message.
INFO | jvm 11 | 2018/02/15 17:12:49 | ssl_debug(1): Received finished message.
INFO | jvm 11 | 2018/02/15 17:12:49 | ssl_debug(1): Session added to session cache.
INFO | jvm 11 | 2018/02/15 17:12:49 | ssl_debug(1): Handshake completed, statistics:
INFO | jvm 11 | 2018/02/15 17:12:49 | ssl_debug(1): Read 3995 bytes in 5 records, wrote 426 bytes in 4 records.
INFO | jvm 11 | 2018/02/15 17:13:25 | ssl_debug(1): Exception reading SSL message: java.io.EOFException: Connection closed by remote host.
INFO | jvm 11 | 2018/02/15 17:13:25 | ssl_debug(1): Shutting down SSL layer...
INFO | jvm 11 | 2018/02/15 17:13:25 | ssl_debug(1): Read 997 bytes in 1 records, 960 bytes net, 960 average.
INFO | jvm 11 | 2018/02/15 17:13:25 | ssl_debug(1): Wrote 650 bytes in 2 records, 575 bytes net, 287 average.
INFO | jvm 11 | 2018/02/15 17:13:25 | ssl_debug(1): Closing transport...
but when I switch “useJSSE”=true on connector nothing appears in wrapper.log confirming using TLS.
In “9-7_Integration_Server_Administrators_Guide.pdf” we didn’t find any information about global settings (watt.*) for using TLS1.2 whenever it is possible. Only this:
Extended settings:
#webMethods#Integration-Server-and-ESB