Start Date: March 23, 2020 (Monday)
Start Time: 20:00 (MST)
Finish Date: March 24, 2020 (Tuesday)
Finish Time: 04:00 (MST)
Purpose: Drop Support for TLS 1.0/1.1 on login.imagesilo.com
Customer Impact:
No impact is expected for customers utilizing current browsers and ImageSilo software. However, customers using older versions of browsers, ImageSilo software, or (potentially) custom code will be required to update or may be able to apply a local patch.
Details:
Engineering will be making changes to the ImageSilo network infrastructure that will drop support for TLS 1.0/1.1. Transport Layer Security (TLS) is the cryptographic mechanism used to transfer data securely and privately between a client (i.e. customer web browser or other software) and a server (i.e. login.imagesilo.com). Over the years, these cryptographic mechanisms have progressed, and improved in response to actual and theoretical weaknesses in these protocols. As new protocols are created, previous protocols are discouraged from being used (deprecated). For example, the original Secure Sockets Layer (SSL) protocol had two published versions, 2.0/3.0. These versions were published in 1996/1999, and deprecated in 2011/2015 respectively. TLS, the successor to SSL, currently comes in four versions, 1.0, 1.1, 1.2, and 1.3. TLS 1.0/1.1 were published in 1999/2006 respectively, and both are scheduled for deprecation in 2020. TLS 1.3 was published in 2018 and is still in the early stages of adoption. As TLS 1.3 becomes more mature, we will add support for this protocol.
TLS 1.2 was published in 2008, has been available on ImageSilo for many years, has been widely adopted, and is the proven workhorse of the TLS protocols. As such, after this maintenance, TLS 1.2 will be the only protocol supported by ImageSilo.
ImageSilo engineering consistently strives to ensure the integrity, security, and availability of our customers’ data. By moving forward with this change, we can ensure that all of our customers are connecting to ImageSilo using best-in-class security protocols. While the majority of our customers will be unaffected by this change (as they are already using browsers and software that automatically negotiate to TLS 1.2), we recognize that some of our customers will need to take action in order to maintain connectivity after the maintenance is complete. As such, we are providing ample notice prior to the change, and we will send periodic reminders to allow our customers the opportunity to validate their current configurations or to make any changes necessary to provide for a smooth transition. Please carefully review the information below to determine if there are steps you need to take to ensure a smooth transition.
For those who are using Software versions prior to the supported versions listed below, it is recommended to update software to the most current version (or minimally to the versions listed below).
** Browser Supported Versions [1]
Microsoft Internet Explorer – 11
Google Chrome – 77
Firefox – 69
Apple Safari (Mobile) – 13.1.2
Apple Safari (Desktop) – 13.0.1
** ImageSilo Minimum Software Supported Versions
ImageSilo Client – 84.0
ImageSilo Workflow Custom Code Server – 85.6
ImageSilo Tools – 84.1 [2]
** Additional Digitech Software Minimum Supported Versions
PaperVision Capture – 87 (only if using the ImageSilo/PVE Direct export)
PaperFlow – 81 (only if using the ImageSilo/PVE Direct export)
PaperVision Message Manager – See below [3]
** Digitech Systems Professional Services Software Supported Versions
Active Directory Sync w/ ImageSilo – 84.2
Match and Merge – 3.3
If you wish to determine if the browsers and software you use will continue to function after the change, we have established a TLS 1.2 only endpoint for testing. It is available at https://tls.imagesilo.com. This endpoint will provide access to the same data available on ImageSilo, but will only support the TLS 1.2 protocol. It is not recommended that this endpoint be used long term, as its functionality is not guaranteed in the future. If testing against this endpoint fails, and you are using supported versions listed above, please contact ImageSilo Administration. If you are using software versions prior to the supported versions listed above, it is recommended that you update your software. If it is not possible to update, please contact ImageSilo Administration, as they may be able to provide a registry patch to enable connectivity.
In addition to browsers and software, any custom code that has been written by Digitech Systems Professional Services or a third party should be tested using https://tls.imagesilo.com. If the custom code does not function, please contact the provider to determine if there is an updated version available. If an updated version is not available, it is likely that applying a registry patch will enable functionality.
Please note that these dates are subject to change. If changes occur, another ImageSilo Maintenance Notification will be sent to you. As always, we greatly appreciate your business.
Please feel free to contact ImageSilo Administration with any questions or comments.
866.374.3569 (303.493.6900)
siloadmin@imagesilo.com
[1] The minimum browser versions provided are the current versions fully tested for ImageSilo. Previous versions may work, but are not supported. If you are having an issue with an older browser version, you will be asked to update.
[2] If you are unable to update ImageSilo Tools to a supported version, instructions for how to apply a registry patch can be found in the Knowledge Base article below.
[3] PaperVision Message Manager requires a registry patch to continue working with ImageSilo. If you need assistance, please contact ImageSilo Administration.
*********************************************************************