TLS Supported Cipher Suites
You must use a supported cipher to connect to Vault. Veeva Vault modifies the set of supported TLS cipher suites to provide a better developer experience. For example, we may remove weak ciphers or change cipher priority order to utilize stronger ciphers. These changes may affect custom integrations, but Vault UI users are not affected.
TLS versions and cipher suites are reviewed periodically to maintain strong security. Prior to any changes, Veeva Developer Services will contact all customers with affected integrations so that they can test their integrations. Customers can test the new ciphers on a limited release sandbox Vault.
Vault currently supports the following TLS cipher suites:
TLSv1.3/TLS_AES_256_GCM_SHA384TLSv1.3/TLS_CHACHA20_POLY1305_SHA256TLSv1.3/TLS_AES_128_GCM_SHA256TLSv1.2/ECDHE-RSA-AES256-GCM-SHA384TLSv1.2/ECDHE-RSA-AES128-GCM-SHA256
If you have questions, please reach out to our Developer Support team on Veeva Connect