Breaking Change Planned - Disabling Weak Cipher Suites First Rehearsal This Week
Lindsey Rix
Blackbaud Employee
As a follow-up to our previous post about an upcoming breaking change to the supported cipher suites for the SKY API gateway, we wanted to remind you that this week is our first rehearsal. Rehearsal #1 for this change is scheduled for this Thursday, February 1st at 22:00 GMT (17:00 EST).The rehearsal duration is 3 hours (until 1:00 GMT (20:00 EST)). We ask that you use this time to ensure that your application continues to work with the planned cipher suite changes. If your application's network configuration is not compatible with this change, your application will lose access to SKY API during this rehearsal. If your application makes SKY API requests from a distributed application architecture or utilizes various technologies, it's possible that only a portion of your application will lose access. Please consider all aspects of your application.
What’s changing?
In an ongoing effort to prioritize security, privacy, and risk management, SKY API is updating its Gateway TLS configuration to remove cipher suites that Blackbaud and the industry has identified as weak. This change will occur on Wednesday, February 28th, 2024. Depending on your application's networking and cipher configuration, these may be breaking changes.The updated list of supported cipher suites include:
Our next rehearsal is on February 14th. If your application experiences issues during the first rehearsal, you'll have one more opportunity to verify your application's configuration during Rehearsal #2 on Wednesday, February 14th, 2024 at 10:00 GMT (5:00 EST) – 12:00 GMT (7:00 EST).
During rehearsals, if you uncover an issue with your configuration and cannot resolve it using one of the documented cipher suites above, contact the Blackbaud SKY Developer team.
What’s changing?
In an ongoing effort to prioritize security, privacy, and risk management, SKY API is updating its Gateway TLS configuration to remove cipher suites that Blackbaud and the industry has identified as weak. This change will occur on Wednesday, February 28th, 2024. Depending on your application's networking and cipher configuration, these may be breaking changes.The updated list of supported cipher suites include:
- TLS_ECDHE_ECDSA_WITH_AES_256_GCM_SHA384
- TLS_ECDHE_ECDSA_WITH_AES_128_GCM_SHA256
- TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384
- TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256
Our next rehearsal is on February 14th. If your application experiences issues during the first rehearsal, you'll have one more opportunity to verify your application's configuration during Rehearsal #2 on Wednesday, February 14th, 2024 at 10:00 GMT (5:00 EST) – 12:00 GMT (7:00 EST).
During rehearsals, if you uncover an issue with your configuration and cannot resolve it using one of the documented cipher suites above, contact the Blackbaud SKY Developer team.
1
Comments
-
Rehearsal 1 Start - The cipher suite configuration change is in effect for the SKY API Gateway and Rehearsal 1 has begun.
0 -
Rehearsal 1 Finish - The previous cipher suite configuration has been restored to the SKY API Gateway and Rehearsal 1 is complete.
0
Categories
- All Categories
- 6 Blackbaud Community Help
- 213 bbcon®
- 1.4K Blackbaud Altru®
- 401 Blackbaud Award Management™ and Blackbaud Stewardship Management™
- 1.1K Blackbaud CRM™ and Blackbaud Internet Solutions™
- 15 donorCentrics®
- 360 Blackbaud eTapestry®
- 2.6K Blackbaud Financial Edge NXT®
- 655 Blackbaud Grantmaking™
- 576 Blackbaud Education Management Solutions for Higher Education
- 3.2K Blackbaud Education Management Solutions for K-12 Schools
- 939 Blackbaud Luminate Online® and Blackbaud TeamRaiser®
- 84 JustGiving® from Blackbaud®
- 6.6K Blackbaud Raiser's Edge NXT®
- 3.7K SKY Developer
- 248 ResearchPoint™
- 119 Blackbaud Tuition Management™
- 165 Organizational Best Practices
- 241 Member Lounge (Just for Fun)
- 34 Blackbaud Community Challenges
- 34 PowerUp Challenges
- 3 (Open) PowerUp Challenge: Chat for Blackbaud AI
- 3 (Closed) PowerUp Challenge: Data Health
- 3 (Closed) Raiser's Edge NXT PowerUp Challenge: Product Update Briefing
- 3 (Closed) Raiser's Edge NXT PowerUp Challenge: Standard Reports+
- 3 (Closed) Raiser's Edge NXT PowerUp Challenge: Email Marketing
- 3 (Closed) Raiser's Edge NXT PowerUp Challenge: Gift Management
- 4 (Closed) Raiser's Edge NXT PowerUp Challenge: Event Management
- 3 (Closed) Raiser's Edge NXT PowerUp Challenge: Home Page
- 4 (Closed) Raiser's Edge NXT PowerUp Challenge: Standard Reports
- 4 (Closed) Raiser's Edge NXT PowerUp Challenge: Query
- 792 Community News
- 2.9K Jobs Board
- 53 Blackbaud SKY® Reporting Announcements
- 47 Blackbaud CRM Higher Ed Product Advisory Group (HE PAG)
- 19 Blackbaud CRM Product Advisory Group (BBCRM PAG)
