SDM/NNCentral "Insecure Transport" Web Application VA Scan
Hi All,
Sharing with you is the results of our client's Web Application VA Scan (Our client used Qualys WAS)
As stated by the Cybersecurity group of our client, they detect an "Insecure Transport" vulnerability for the http,
that unsecured URL (affected URL above: http://<ip-address>8443/) is responding 400 (Bad Request) to user's browsing activity. Which I checked was true.
And they want us to redirect any http request to https / with a response of 3xx.
We setup our SDM/nncentral as HTTPS and self-signed. It is accessible via https://<ip-address>:8443/ format.
I tried to use the first method in this site (