Security vulnerability scanning software , telnet or any port scanner software may cause ActiveSpaces-secure cluster go hang or unresponsive if they scan ActiveSpaces ports.

Security vulnerability scanning software , telnet or any port scanner software may cause ActiveSpaces-secure cluster go hang or unresponsive if they scan ActiveSpaces ports.

book

Article ID: KB0092827

calendar_today

Updated On:

Products Versions
TIBCO ActiveSpaces -
Not Applicable -

Description

Description:
Security vulnerability scanning software , telnet  or any port scanner software may cause ActiveSpaces-secure cluster go hang or unresponsive if they scan ActiveSpaces ports leave the connection hanging in the open state.


Recommendations 


1) Configure the scan to not examine the AS ports on the AS hosts


2) Apply IP table rules to avoid unnecessary connections to secure cluster.


3) Institute firewall rules on the AS hosts that only permit connections from the other AS hosts


4) Configure the scanner so that it doesn't leave the connection hanging in the open state.

5) Do not use telnet command to connect any AS-Secure cluster ports.

Issue/Introduction

Security vulnerability scanning software , telnet or any port scanner software may cause ActiveSpaces-secure cluster go hang or unresponsive if they scan ActiveSpaces ports.

Additional Information