Key-Exchange-Method-IMAP/EN
Check for anonymous key exchange
If the result is positive, there is no need for further action. If the result is negative, please read the following instructions.
Result positive | Anonymous key exchange is not supported |
Result negativ | Anonymous key exchange is supported |
Description | Your server is configured to allow connections without verifying the identity of your server. |
Background | The term Cipher Suite stands for a collection of cryptographic methods used (encryption of information). This collection includes the key exchange method, digital signature, encryption and cryptographic hash functions. This combination of cryptographic components ensures a secure connection between two parties, e.g. your mail program and a server. In the TLS protocol, the Cipher Suite (cryptographic procedure) determines which algorithms are to be used to establish a secure data connection and is decisively responsible for the security of the connection. |
Consequence | Your server is ready to establish very weak connections, which are vulnerable to Man-in-the-middle attacks. This can be used to read out mail content and misuse them for criminal purposes. |
Solution/Tips | If Anonymous key exchange is supported is reported, disable "Anonymous key exchange" support in encryption methodology. |