DrayTek UK Users' Community Forum

Help, Advice and Solutions from DrayTek Users

pc1 compliance

  • jasonmilsom
  • Topic Author
  • User
  • User
More
11 Apr 2018 13:55 #1 by jasonmilsom
pc1 compliance was created by jasonmilsom
I have a client who keeps failing their PC! compliance scan with first data . I have shut down all access from the internet via the management panel and and disabled ping from internet.
according to first data the scan does not like the self signed certificate ssl ( sorry none the wiser) and requires a ca rooted one .
i also need to close port 443 .
the only way i have access is through a VPN remote dial-in user .
i have never had this issue with any other clients using draytek 2860 /2862
can anyone help

Please Log in or Create an account to join the conversation.

More
12 Apr 2018 09:23 #2 by admin3
Replied by admin3 on topic Re: pc1 compliance
If you're not using the router's SSL VPN server, disabling that should help as that is responding on TCP 443 with the router's self-signed certificate. That service is located in [VPN and Remote Access] > [Remote Access Control].
On there, turn off the SSL VPN Server and I recommend turning off PPTP VPN Server if you're not using the PPTP VPN - It's better to use L2TP over IPsec if possible.



Forum Administrator

Please Log in or Create an account to join the conversation.