diff --git a/ssl/deprecated-tls.yaml b/ssl/deprecated-tls.yaml index f2d4a388e6..100968c9c5 100644 --- a/ssl/deprecated-tls.yaml +++ b/ssl/deprecated-tls.yaml @@ -2,7 +2,7 @@ id: deprecated-tls info: name: Deprecated TLS Detection (TLS 1.1 or SSLv3) - author: righettod + author: righettod,forgedhallpass severity: info reference: - https://ssl-config.mozilla.org/#config=intermediate @@ -17,6 +17,24 @@ info: ssl: - address: "{{Host}}:{{Port}}" min_version: sslv3 + max_version: sslv3 + + extractors: + - type: json + json: + - " .tls_version" + + - address: "{{Host}}:{{Port}}" + min_version: tls10 + max_version: tls10 + + extractors: + - type: json + json: + - " .tls_version" + + - address: "{{Host}}:{{Port}}" + min_version: tls11 max_version: tls11 extractors: