Forum Discussion
James_Smith_299
Nimbostratus
Jun 04, 2018Allow TLS1.2 Only
BIG-IP LTM running v12.1.2 HF2. End goal is to allow TLS1.2 only.
We tried the steps below but application failed to launch.
Followed this guide to reconfigure Client SSL Profile.
https://suppor...
JG
Cumulonimbus
Jun 07, 2018Rather than removing ciphers supported for the unwanted versions of SSL/TLS, simply disable the support of those insecure protocols.
Within the SSL profile, select from "Options List" the following:
- No SSLv2
- No SSLv3
- No TLSv1
- No TLSv1.1
.
Keep in mind that there could be a lot of clients out there that do not use TLSv1.2, particularly those used for internal service integration purposes; they are typically lagging behind in maintenance.
Help guide the future of your DevCentral Community!
What tools do you use to collaborate? (1min - anonymous)Recent Discussions
Related Content
DevCentral Quicklinks
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com
Discover DevCentral Connects