Knowledge BaseTroubleshootingMitigate the RSA key exchange vulnerability on ZSphere HTTPS port 443

Mitigate the RSA key exchange vulnerability on ZSphere HTTPS port 443

TroubleshootingZVF · ZSphereVersions4.xArticle IDKB-200063Updated2026-09-16

Issue

Use this article to troubleshoot and mitigate an RSA key exchange vulnerability reported for ZSphere HTTPS port 443.

Symptoms

  • A security scan reports that HTTPS on port 443 supports RSA key exchange.
  • The target environment requires non-compliant cipher suite entries to be disabled.

Environment

  • Product: ZVF
  • Version: 4.x
  • Component: ZSphere
  • Affected object: HTTPS/security hardening
  • Scenario: Security and certificate issues. Confirm the current version, deployment topology, storage type, and operation timeline.

Possible causes

Sign in to view the rest of this article, plus more troubleshooting and solution know-how.

Mitigate the RSA key exchange vulnerability on ZSphere HTTPS port 443 | KB-200063 | ZStack Resource Center