Confluence and JIRA Security - Diffie-Hellman for TLS

Hi,

tested Confluence and JIRA against https://weakdh.org/sysadmin.html

Both are affected. 

Tried to add the cipher attribute to the SSL-Connector in server.xml. 

After that Confluence's Sidebar was hidden an the possibility to edit documents in attachments was gone. 

How did/do you fix that issue? 

Cheers, 

Mario

2 answers

1 accepted

This widget could not be displayed.

You can change the Attribute within the Apache and leave the Tomcat be.

Its never a good idea to run a tomcat directly.

Always use an Apache as Proxy.

 

This widget could not be displayed.
Timothy Chin Community Champion May 27, 2015

What does this have to do with Atlassian? Shouldn't this all be configured in Apache?

Is this behaviour related to Apache Tomcat, too? -> "After that Confluence's Sidebar was hidden an the possibility to edit documents in attachments was gone. "

Suggest an answer

Log in or Sign up to answer
Atlassian Summit 2018

Meet the community IRL

Atlassian Summit is an excellent opportunity for in-person support, training, and networking.

Learn more
Community showcase
Posted Wednesday in New to Jira

Are you planning to trial, or are currently trialling Jira Software? - We want to talk to you!

Hello! I'm Rayen, a product manager at Atlassian. My team and I are working hard to improve the trial experience for Jira Software Cloud. We are interested in   talking to 20 people planning t...

112 views 2 0
Join discussion

Atlassian User Groups

Connect with like-minded Atlassian users at free events near you!

Find a group

Connect with like-minded Atlassian users at free events near you!

Find my local user group

Unfortunately there are no AUG chapters near you at the moment.

Start an AUG

You're one step closer to meeting fellow Atlassian users at your local meet up. Learn more about AUGs

Groups near you