Disabling Old Protocols TLS 1.0 & 1.1
Posted: Tue Aug 18, 2026 5:59 am
Hello we currently are going through a pci vulnerability scan and our server is getting flagged for having the old protocol tls 1.0 enabled.
I went into the config file and put true next to Tls disabled 1.0 and 1.1 in the vpn conf file and we're still getting flagged (with the service stopped and rebooted)
Also have Openvpn clone feature turned on although it's only flagging on the main Softether vpn client port but there may be something there I don't know about
Is there somewhere else where the server is keeping the old TLS versions enabled? This is the last part to getting it passed. I was able to import a valid cert which was part of it too. Anyone ever come across this?
I went into the config file and put true next to Tls disabled 1.0 and 1.1 in the vpn conf file and we're still getting flagged (with the service stopped and rebooted)
Also have Openvpn clone feature turned on although it's only flagging on the main Softether vpn client port but there may be something there I don't know about
Is there somewhere else where the server is keeping the old TLS versions enabled? This is the last part to getting it passed. I was able to import a valid cert which was part of it too. Anyone ever come across this?