06-10-21 06:15 PM
Our security scans have shown that there's a need to disable the AMQP cleartext authentication method inside of RabbitMQ.
For reference RabbitMQ's article on this is here (TLS Support — RabbitMQ)
07-10-21 08:54 AM
20-07-22 08:52 AM
Hi, Charles,
We have same issue and finally we received the reply from BP support that it's not possible to switch from 5672 to secure 5671 port with certificates included.
It was mentioned by BP that:
This may be useful to look into: Vulnerability in RabbitMQ : disable cleartext authentication mechanisms in the amqp configuration