Prices 2019 - Geo Learning Qualys, Directaccess and the tls logjam attack | richard m. hicks, Another critical flaw affecting transport layer security (tls) was discovered recently that could put some organizations at risk. the "logjam" attack exploits a weakness in how the diffie-hellman key exchange is used. an attacker, acting as a man-in-the-middle, can potentially force a downgrade of the tls connection, resulting in the use of weak cryptography.. What version of ssl does iis 7 use by default, and how, Iis 7 supports at least ssl 3.0, tls 1.0 and higher. in ssl/tls, the version used for each connection is negotiated. the client sends a 'hello' message first which indicates the highest level of the protocol he supports.. Informationweek, serving the information needs of the, Informationweek: news analysis and commentary on information technology trends, including cloud computing, devops, data analytics, it leadership, cybersecurity, and it infrastructure..