# Kibana 5601 port protocol & cipher can't detected

**URL:** <https://discuss.elastic.co/t/kibana-5601-port-protocol-cipher-cant-detected/349613>\
**Category:** Kibana\
**Tags:** elastic-stack-security\
**Created:** [December 19, 2023, 3:29am UTC](https://discuss.elastic.co/t/kibana-5601-port-protocol-cipher-cant-detected/349613 "2023-12-19T03:29:49Z")\
**Posts on this page:** 3\
**Page:** 1

<div class="post-metadata">

**Author:** ![Septianingrum.17](https://avatars.discourse-cdn.com/v4/letter/s/34f0e0/32.png) [@Septianingrum.17](https://discuss.elastic.co/u/Septianingrum.17)\
**Post date:** [December 19, 2023, 3:29am UTC](https://discuss.elastic.co/t/kibana-5601-port-protocol-cipher-cant-detected/349613/1 "2023-12-19T03:29:49Z")

</div>

I just did a vulnerability scan and got the issue "SSH in Elastic server CBC Mode Ciphers Enabled" this vulnerability was detected on the Kibana server.

I have changed the server.ssl.cipherSuites and server.ssl.supportedProtocols configuration in the kibana.yml but the vulnerability is still detected in the next scan

configuration changes I made:

```auto
server.ssl.supportedProtocols: ["TLSv1.2", "TLSv1.3"]
server.ssl.cipherSuites: [ECDHE-RSA-AES128-GCM-SHA256 ECDHE-ECDSA-AES128-GCM-SHA256 ECDHE-RSA-AES256-GCM-SHA384 ECDHE-ECDSA-AES256-GCM-SHA384 DHE-RSA-AES128-GCM-SHA256 ECDHE-RSA-AES128-SHA256 DHE-RSA-AES128-SHA256 ECDHE-RSA-AES256-SHA384 DHE-RSA-AES256-SHA384 ECDHE-RSA-AES256-SHA256 DHE-RSA-AES256-SHA256 TLS_AES_256_GCM_SHA384 TLS_CHACHA20_POLY1305_SHA256 TLS_AES_128_GCM_SHA256 HIGH !aNULL !eNULL !EXPORT !DES !RC4 !MD5 !PSK !SRP !CAMELLIA]

```

is there another way to solve this issue?

Thank you,  
Regards,  
Septia

---

<div class="post-metadata">

**Author:** ![leandrojmp](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/leandrojmp/32/107231_2.png) [@leandrojmp](https://discuss.elastic.co/u/leandrojmp)\
**Post date:** [December 19, 2023, 3:39am UTC](https://discuss.elastic.co/t/kibana-5601-port-protocol-cipher-cant-detected/349613/2 "2023-12-19T03:39:00Z")

</div>

> [@Septianingrum.17](#):
>
> SSH in Elastic server CBC Mode Ciphers Enabled

This has no relation to Kibana, from what you described this is a vulnerability in your SSH server, not on Kibana, you need to fix it on your sshd server changing the ssd\_config file.

This is out of the scope of this forum, but it is not hard to find how to fix it, check out this [link as an example](https://success.trendmicro.com/dcx/s/solution/1120362-ssh-server-cbc-mode-ciphers-enabled-in-interscan-messaging-security-virtual-appliance-imsva-vuln).

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/elastic/original/3X/1/a/1ac57faf039f6b580b3f104ef42a2a89e41014de.png) [@system](https://discuss.elastic.co/u/system)\
**Post date:** [January 16, 2024, 3:39am UTC](https://discuss.elastic.co/t/kibana-5601-port-protocol-cipher-cant-detected/349613/3 "2024-01-16T03:39:05Z")

</div>

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.
