Forum Discussion
gdoyle
Cirrostratus
May 19, 2016Custom Response Upon Denial with iRule.
We created an irule which denies a user access if they are not using TLS 1.1 or greater (so TLS1.0 or no TLS). We would like a custom message, and although it is in the iRule, that is not the message...
Yann_Desmarest
Cirrus
May 23, 2016Hi,
You can use one of the irules provided above and add TLS1.0 ciphers in the cipher list. For example, you can do the following in the cipher list of your client ssl profile :
DEFAULT:TLSv1gdoyle
Cirrostratus
May 24, 2016The TLSv1 in the cipher and using any of the irules that y'all were kind enough to provide above, I receive the same message.
Firefox tells the testers that the website owner has configured the site improperly.
IE says that in order to access the site they will have to enable TLS 1.0, 1.1, or 1.2.
It is basically acting as if no irule exists at all and immediately being denied and receiving the default message from the browser. This is even with TLS1 allowed in the ciphers and the irule in place.. It is odd.
I'm wondering now if there is just another way, via ifile or something else, to go about doing this check and redirecting them to a notification page?
Thoughts?
Help guide the future of your DevCentral Community!
What tools do you use to collaborate? (1min - anonymous)Recent Discussions
Related Content
DevCentral Quicklinks
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com
Discover DevCentral Connects