Open the backup server.xml. For location of the backup file, see Backed Up Configuration Files.
Search for the sslProtocol attribute in NIDP_Name="devman" and NIDP_Name="connector" inside the Connector element and copy the attribute values.
Change to the Tomcat configuration directory and open the 4.3 or later server.xml file:
/opt/novell/nam/adminconsole/conf
Search for the sslProtocol attribute in the NIDP_Name="devman" and NIDP_Name="connector" inside the Connector element. You will see the following value:
sslProtocol="TLSv1.2" sslEnabledProtocols="SSLv2Hello,TLSv1.1,TLSv1.2"
Replace this attribute value with the previous value that you copied in step 2.
Open the backup server.xml. For location of the backup file, see Backed Up Configuration Files.
Search for the cipher attribute in NIDP_Name="devman" and NIDP_Name="connector" inside the Connector element and copy the list of ciphers.
Change to the Tomcat configuration directory:
/opt/novell/nam/adminconsole/conf
Open the server.xml file. Search for the cipher attribute in NIDP_Name="devman" and NIDP_Name="connector" inside the Connector element.
Replace this list of ciphers with the list copied in step 2.
Open the backup server.xml. For location of the backup file, see Backed Up Configuration Files.
Search for the cipher attribute in NIDP_Name="devman" and NIDP_Name="connector" inside the <Connectors> element and copy the list of ciphers
Change to the Tomcat configuration directory:
/opt/novell/nam/adminconsole/conf
Open the server.xml file. Search for the cipher attribute in NIDP_Name="devman" and NIDP_Name="connector" inside the <Connectors> element.
Replace the list of ciphers with the value you copied in step 2.
Remove the useServerCipherSuitesOrder attribute.
Open the /opt/novell/nam/adminconsole/conf/tomcat7.conf file.
Remove the following line:
JAVA_OPTS="${JAVA_OPTS} -Djdk.tls.ephemeralDHKeySize=2048"
Change to the Tomcat configuration directory:
/opt/novell/nam/adminconsole/conf/web.xml
Open the web.xml file and comment out the httpHeaderSecurity filter definition.
<filter> <filter-name>httpHeaderSecurity</filter-name> <filter-class>org.apache.catalina.filters.HttpHeaderSecurityFilter</ filter-class> <async-supported>true</async-supported> </filter>
Comment out the following parameter that sets up an appropriate maximum age value:
<init-param> <param-name>hstsMaxAgeSeconds</param-name> <param-value>31536000</param-value> </init-param>
Comment out the filter mapping.
<filter-mapping> <filter-name>httpHeaderSecurity</filter-name> <url-pattern>/*</url-pattern> <dispatcher>REQUEST</dispatcher> </filter-mapping>