Which version of TLS does EventSentry use between the collector and its agents?

Article ID: 335
Category: Collector Service
Applies to: 3.2 and higher
Updated: 2021-10-21

Since EventSentry utilizes the TLS capabilities of the OS, the version of TLS being used between the collector and the agents depends both on the version of Windows the collector is running on, and the version of Windows the agent is running on.

By default, client (agent) and server (collector) will negotiate the following TLS parameters illustrated in the matrix below. You can also review event 910 (on the agent) to verify which TLS parameters were negotiated.

AgentCollector
Windows Server 2008 R2Windows 7
Windows Server 2012Windows 8
Windows Server 2012 R2Windows 8.1
Windows Server 2016Windows 10

1
2
3
4
<tr style="border: 1px solid gray;">
    <td style="border: 1px solid gray;" nowrap><font color=" #2e86c1"><b>Windows<br>Server 2008 R2</b></font></td>

    <td style="border: 1px solid gray;" nowrap>Protocol: TLS1.2<br>

Cipher: AES
Cipher strength: 128
Hash: SHA256
Hash strength: 256
Key exchange: RSA
Key exchange strength: 2048

1
    <td style="border: 1px solid gray;" nowrap>Protocol: TLS1.2<br>

Cipher: AES
Cipher strength: 128
Hash: SHA256
Hash strength: 256
Key exchange: RSA
Key exchange strength: 2048

1
    <td style="border: 1px solid gray;" nowrap>Protocol: TLS1.2<br>

Cipher: AES
Cipher strength: 128
Hash: SHA256
Hash strength: 256
Key exchange: RSA
Key exchange strength: 2048

1
    <td style="border: 1px solid gray;" nowrap>Protocol: TLS1.2<br>

Cipher: AES
Cipher strength: 128
Hash: SHA256
Hash strength: 256
Key exchange: RSA
Key exchange strength: 2048

1
2
3
4
5
6
</tr>

<tr style="border: 1px solid gray;">
    <td style="border: 1px solid gray;"><font color=" #2e86c1"><b>Windows Server 2012</b></font></td>

    <td style="border: 1px solid gray;">Protocol: TLS1.2<br>

Cipher: AES
Cipher strength: 128
Hash: SHA256
Hash strength: 256
Key exchange: RSA
Key exchange strength: 2048

1
    <td style="border: 1px solid gray;">Protocol: TLS1.2<br>

Cipher: AES
Cipher strength: 128
Hash: SHA256
Hash strength: 256
Key exchange: ECDH ephemeral RSA
Key exchange strength: 256

1
    <td style="border: 1px solid gray;">Protocol: TLS1.2<br>

Cipher: AES
Cipher strength: 256
Hash: SHA384
Hash strength: 384
Key exchange: ECDH ephemeral RSA
Key exchange strength: 256

1
    <td style="border: 1px solid gray;">Protocol: TLS1.2<br>

Cipher: AES
Cipher strength: 256
Hash: SHA384
Hash strength: 384
Key exchange: ECDH ephemeral RSA
Key exchange strength: 256

1
2
3
4
5
6
7
</tr>


<tr style="border: 1px solid gray;">
    <td style="border: 1px solid gray;"><font color=" #2e86c1"><b>Windows Server 2012 R2</b></font></td>

    <td style="border: 1px solid gray;">Protocol: TLS1.2<br>

Cipher: AES
Cipher strength: 128
Hash: SHA256
Hash strength: 256
Key exchange: ECDH ephemeral RSA
Key exchange strength: 256

1
2
3
    <td style="border: 1px solid gray;">TBD</td>

    <td style="border: 1px solid gray;">Protocol: TLS1.2<br>

Cipher: AES
Cipher strength: 128
Hash: SHA256
Hash strength: 256
Key exchange: ECDH ephemeral RSA
Key exchange strength: 256

1
    <td style="border: 1px solid gray;">Protocol: TLS1.2<br>

Cipher: AES
Cipher strength: 128
Hash: SHA256
Hash strength: 256
Key exchange: RSA
Key exchange strength: 256


Windows Server 2016

1
    <td style="border: 1px solid gray;">Protocol: TLS1.2<br>

Cipher: AES
Cipher strength: 256
Hash: SHA384
Hash strength: 384
Key exchange: DH ephemeral
Key exchange strength: 2048

1
2
3
    <td style="border: 1px solid gray;">TBD</td>

    <td style="border: 1px solid gray;">Protocol: TLS1.2<br>

Cipher: AES
Cipher strength: 128
Hash: SHA256
Hash strength: 256
Key exchange: ECDH ephemeral RSA
Key exchange strength: 256

1
    <td style="border: 1px solid gray;">Protocol: TLS1.2<br>

Cipher: AES
Cipher strength: 256
Hash: SHA384
Hash strength: 384
Key exchange: ECDH ephemeral RSA
Key exchange strength: 255

1
</tr>


Try EventSentry on-premise

FREE 30-day evaluation

Download Now