SSLv2 enabled on port 9000 but should not be

SSLv2 enabled on port 9000 but should not be

I have deployed the AssetExplorer agent as part of our ServiceDesk Plus system, I disabled all protocols except for TLS1.2 as seen below. Agent version is 1.0.32



I saved and downloaded the agent and deployed it, and you can see on the clients the registry options look to be OK per what I setup in SDP for the agent.



However, my vulnerability scanner (Nessus) has detected SSLv2 (only) enabled on port 9000 of our clients now. I confirmed by using OpenSSL client to test:



And it fails on SSLv3 and all TLS versions.

So it seems whilst the agent is set to TLS, it is doing anything but that! What could be the problem here? There is no proxy in between, no firewall or SSL decryption at all. It's happening across all clients the agent is on so it's not a single computer issue.


                  New to ADSelfService Plus?