Backup Exec Nessus or Tenable scanner 'vulnerabilities' for SSL Certificate

book

Article ID: 100065973

calendar_today

Updated On:

Resolution

Backup Exec generates a self-signed SSL certificate for the first time hostname configuration, which is by design and is not an issue.

"SSL Certificate Cannot Be Trusted" and "SSL Self-Signed Certificate" reported vulnerabilities can be safely ignored.

"SSL Certificate with Wrong Hostname" reported vulnerability can be safely ignored. The Backup Exec OpenSSL framework that generates certificates, considers NetBIOS name instead of FQDN which causes the mismatch.

 

Issue/Introduction

Severity Plugin Id Name Medium(6.4) 51192 SSL Certificate Cannot Be Trusted Medium(6.4) 57582 SSL Self-Signed Certificate Medium(5.0) 45411 SSL Certificate with Wrong Hostname

Additional Information

ETrack: 4189487