NETGEAR is aware of a growing number of phone and online scams. To learn how to stay safe click here.
Security
3 TopicsSupport HTTPS oin GS1xxE web Managet Switches
Please consider using HTTPS for the web management of the GS1xxE line of switches. Especially the smaller models need a secure way to configure them as there are no real replacements for in-field deployments outside special technical rooms where is no room to fit an entire rack into... As the current state of security of many of the embedded or IoT thingis is sub-optimal it is crucial to prevent login credential sniffing via other pOwnd network devices within the same subnet. Thanks, Stefan Seide12KViews8likes1CommentProsafe M4100-26G TLS 1.2 Not Available and Weak Cipher Suites
Our vulnerability scanning shows that our switch's management over HTTPS only has TLS 1.0. In today's world, everything should be at TLS 1.2, so it is causing our vulnerability scanning to report it as a high vulnerability. We have the latest firmware (10.0.2.20), and have recently re-issued the certificates, so I'm not sure what to do. We have the ability to create self-signed certs externally to the switch, but it doesn't seem to allow us to use them. I can only see how to let the switch generate its own certificates. It is also reporting that it is using weak cipher suites. How can I ge these upgraded?46KViews4likes7Comments