2.1.8 Disable static keys for TLS

Warning! Audit Deprecated

This audit has been deprecated and will be removed in a future update.

View Next Audit Version

Information

Disable support for static keys on TLS sessions terminating on the FortiGate

Prevent TLS sessions terminating on the FortiGate from using static SSL keys

Solution

CLI:

config system global
set ssl-static-key-ciphers disable

end

See Also

https://workbench.cisecurity.org/benchmarks/15284