Question
Citigroup Inc
IN
Last activity: 21 Sep 2023 9:31 EDT
SSL/TLS Renegotiation Setting
Hi All,
Found below suggestion from Pega 8.8.2 SystemOut Logs. Application server is WebSphere 8.5. Not sure if this setting is already available somewhere in the application server. Please share if anyone has idea on this.
SystemOut O Consider setting -Djdk.tls.rejectClientInitiatedRenegotiation=true to prevent DoS attacks through client side initiated TLS renegotiation.
Thanks
Sekar