Forum Discussion
cipher suite supported for my LTM VIP
Hi Friends, We are using TMOS 10.2.4 in our LTM box
I saw the following cipher command in my current VIP's SSL profile cipher column. Would like to know what is the meaning of NATIVE command ? Also may i know whether TLSv1 is supported with the following command, my auditor told not to use TLSv1 but use TLSv1.1 or TLSv1.2 but I am not sure whether the following include TLSv1 or not
NATIVE:TLSv1_1:@SPEED:@STRENGTH
Also we plan to use the following new cipher commands, may I know what is mean by !LOW, it mean exclude Cipher strength of 64 bits right ? So is the TLSv1 are those 64bits strength or lower ?
New Cipher
ALL:!ADH:!EXPORT40:!EXP:!SSLV2:!NULL:!LOW:!MD5:TLSv1_1:@SPEED:@STRENGTH
Cipher suite supported in our TMOS 10.2.4
[user1@LTM] ~ tmm --clientciphers 'DEFAULT'
ID SUITE BITS PROT METHOD CIPHER MAC KEYX
0: 5 RC4-SHA 128 SSL3 Native RC4 SHA RSA
1: 5 RC4-SHA 128 TLS1 Native RC4 SHA RSA
2: 5 RC4-SHA 128 TLS1.2 Native RC4 SHA RSA
3: 47 AES128-SHA 128 SSL3 Native AES SHA RSA
4: 47 AES128-SHA 128 TLS1 Native AES SHA RSA
5: 47 AES128-SHA 128 TLS1.2 Native AES SHA RSA
6: 47 AES128-SHA 128 DTLS1 Native AES SHA RSA
7: 53 AES256-SHA 256 SSL3 Native AES SHA RSA
8: 53 AES256-SHA 256 TLS1 Native AES SHA RSA
9: 53 AES256-SHA 256 TLS1.2 Native AES SHA RSA
10: 53 AES256-SHA 256 DTLS1 Native AES SHA RSA
11: 10 DES-CBC3-SHA 192 SSL3 Native DES SHA RSA
12: 10 DES-CBC3-SHA 192 TLS1 Native DES SHA RSA
13: 10 DES-CBC3-SHA 192 TLS1.2 Native DES SHA RSA
14: 10 DES-CBC3-SHA 192 DTLS1 Native DES SHA RSA
15: 60 AES128-SHA256 128 TLS1.2 Native AES SHA256 RSA
16: 61 AES256-SHA256 256 TLS1.2 Native AES SHA256 RSA
Recent Discussions
Related Content
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com