Vulnerabilities on 'Azure Stack HCI' Cluster nodes | Need help

PANKAJ VISHWAKARMA 0 Reputation points
2024-12-31T10:33:43.6+00:00

Hi,

We have a production Azure Stack HCI v22H2 platform that hosts customers’ critical workloads.

We recently received vulnerability scan results for HCI nodes, showing the following vulnerabilities as security threats that we need to remediate ASAP-

High

  • SSL Medium Strength Cipher Suites Supported (SWEET32)                          

Medium

  • TLS Version 1.0 Protocol Detection
  • TLS Version 1.1 Deprecated Protocol
  • SMB Signing not required                           

Low

  • ICMP Timestamp Request Remote Date Disclosure

Now we need support from Microsoft on the following for HCI platform-

1.      Impact Assessment:

a.      What would be the impact of remediating these vulnerabilities on the HCI platform?

b.      Could there be any operational issues regarding communication between HCI nodes, Active Directory servers, SCVMM, or Windows Admin Center (WAC)?

c.       Are there any other potential issues we should anticipate?

2.      Remediation Procedure:

a.      Do you recommend any specific procedures for addressing these vulnerabilities on the Azure Stack HCI platform?

Azure Stack HCI
Azure Stack HCI
A hyperconverged infrastructure operating system delivered as an Azure service that provides security, performance, and feature updates.
385 questions
Windows Server Security
Windows Server Security
Windows Server: A family of Microsoft server operating systems that support enterprise-level management, data storage, applications, and communications.Security: The precautions taken to guard against crime, attack, sabotage, espionage, or another threat.
1,878 questions
{count} votes

Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.