SQL Server 2014 and TLS 1.0

Recent PCI Security scans have failed to pass because our servers expose the vulnerable TLS 1.0. However, when we disable TLS 1.0, we are no longer able to communicate with SQL Server 2014. This is a huge PCI Compliance problem - Is there any workaround for this - or is there a patch available or coming that will take care of this?

Thanks

Gary Conley
Interware Development Co

May 30th, 2015 10:40am

  • Open gpedit.msc. In the Local Group Policy Editor, double-click Windows Settings under the Computer Configuration node, and then double-click Security Settings.
  • Under the Security Settings node, double-click Local Policies, and then click Security Options.
  • In the details pane, double-click System cryptography: Use FIPS-compliant algorithms for encryption, hashing, and signing.
  • In the System cryptography: Use FIPS-compliant algorithms for encryption, hashing, and signing dialog box, click Enabled, and then click OK to close the dialog box. Close the Local Group Policy Editor.

http://dba.stackexchange.com/questions/93127/sql-server-service-won-t-start-after-disabling-tls-1-0-and-ssl-3-0/99129

Free Windows Admin Tool Kit Click here and download it now
May 30th, 2015 11:01am

This topic is archived. No further replies will be accepted.

Other recent topics Other recent topics