Forum Discussion
Gustavo_Lazarte
Nimbostratus
Jan 13, 2009Disable SSL 2.0
According to our security Auditor we need to disable SSl 2.0 support and support SSL 3.0 or TLS 1.0 instead. I have not found a place in the Client ssl to set this up. I found the following values in the iRules Documentation
[SSL::cipher name] and [SSL::cipher version], That will take care of the SSL 3.0 prob. How can I enable TLS 1.0 access too.
Thanks
2 Replies
Sort By
- Hamish
Cirrocumulus
You can disable SSLv2 in two places in the client SSL setup. - hoolio
Cirrostratus
You could also use an iRule to check the cipher used and redirect clients to a warning page explaining why they're being blocked if they don't meet your criteria. Here is an example:
Recent Discussions
Related Content
DevCentral Quicklinks
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com
Discover DevCentral Connects