Forum Discussion
SJoshi_230759
Nimbostratus
Jul 27, 2016Getting "server is vulnerable to a BEAST attack" message in SSL checker
Hi All,
We have upgraded our SSL cert from SHA-1 to SHA-2. We have disabled both SSLv3 & RC4 in ciphers suit.
After upgraded one of our VIP with new SSL cert, I have checked in SSL checker to determi...
IainThomson85_1
Cumulonimbus
Aug 02, 2016You've still got DES Cipher Suites enabled in your string. Thats what the checker is complaining about.
You'll need to negate this in your Client Side SSL profile.
IainThomson85_1
Cumulonimbus
Aug 02, 2016So from your statement
""BEAST:This server is vulnerable to a BEAST attack Make sure you have the TLSv1.2 protocol enabled on your server. Disable the RC4, MD5, and DES algorithms. Contact your web server vendor for assistance""
Your cipher suites still include DES Ciphers (MD5 aren't - so no need to disable those)
The cipher string you've mentioned will work yes.
Recent Discussions
Related Content
DevCentral Quicklinks
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com
Discover DevCentral Connects