Firefox deprecated ciphers must be disabled.
An XCCDF Rule
Description
A weak cipher is defined as an encryption/decryption algorithm that uses a key of insufficient length. Using an insufficient length for a key in an encryption/decryption algorithm opens up the possibility (or probability) that the encryption scheme could be broken.
- ID
- SV-251571r879587_rule
- Version
- FFOX-00-000027
- Severity
- Medium
- References
- Updated
Remediation Templates
A Manual Procedure
Windows group policy:
1. Open the group policy editor tool with "gpedit.msc".
2. Navigate to Policy Path: Computer Configuration\Administrative Templates\Mozilla\Firefox\Disabled Ciphers
Policy Name: TLS_RSA_WITH_3DES_EDE_CBC_SHA
Policy State: Enabled