My Oracle Support Banner

OLVM: Disable Weak SSH CBC Ciphers on Port 2223 (KVM Host) (Doc ID 3075690.1)

Last updated on MARCH 07, 2025

Applies to:

Linux OS - Version Oracle Linux 7.9 and later
Information in this document applies to any platform.

Symptoms

 A Nessus security scan has identified that SSH Server CBC Mode Ciphers are enabled on OLVM KVM hosts over TCP port 2223.

To align with security best practices and mitigate potential cryptographic vulnerabilities, CBC Mode Ciphers must be disabled on all OLVM KVM hosts as per security compliance requirements.

Cause

To view full details, sign in with your My Oracle Support account.

Don't have a My Oracle Support account? Click to get started!


In this Document
Symptoms
Cause
Solution
References


My Oracle Support provides customers with access to over a million knowledge articles and a vibrant support community of peers and Oracle experts.