IBM Security QRadar SOAR

 View Only

specify TLS cipher for IMAP connection?

  • 1.  specify TLS cipher for IMAP connection?

    Posted Fri August 13, 2021 02:53 PM
    Hello,

    is there a possibility to specify which TLS ciphers are offered by Resilient at the beggining of a connection to an IMAP Exchange Server ? 

    I've had the unexpected surprise of not being able to poll the IMAP Mailbox because of this issue, looks like the ciphers are specifically disallowed on the Exchange side. After some troubleshooting I found out TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA  is accepted, but how can I configure Resilient's mail client to offer this cipher?

    thanks in advance for any advice


    ps - log errors look like this

    ERROR v=unknown c.r.e.ImapServerToJMSRouteBuilder - This could be caused by an incorrect port number, incompatible SSL protocols or ciphers, or other reasons. Check the resilient-email.log file and the email server log files for more information.
    [...]
    javax.mail.MessagingException: Remote host terminated the handshake
    at com.sun.mail.imap.IMAPStore.protocolConnect(IMAPStore.java:742)
    [...]
    Caused by: java.io.EOFException: SSL peer shut down incorrectly

    ------------------------------
    petre b
    ------------------------------