Forum Discussion
Micros_88999
Nimbostratus
Mar 25, 2014How to force pool HTTPS monitoring to use only SSLv3 or TLS1.0
We have an issue where the pool monitors the pool members on port tcp/443 SSL.
- The pool member server only allowing TLS1.0
- The virtual server (Server SSL profile) is set to allow only SSLv3.
...
Micros_88999
Nimbostratus
Jan 09, 2015Does not work for me.
No matter if I specify SSLv3 in the custom monitoring, cipher list, it still uses TLS1.2
Plus it seems if I specify something incorrect (like ssl3), f5 device accepts it but then not sending Client Hello.
Just to clarify, setting SSLv3 seems to be correct as f5 sends Client Hello, but it uses TLS1.2.
- JRahm_128324Jan 09, 2015Historic F5 Accountwhat is your current cipher string? Can you try '!TLSv1.2:!TLSv1.1:!TLSv1:SSLv3' If that doesn't work, I'd open a case with support, this might be a bug.
Help guide the future of your DevCentral Community!
What tools do you use to collaborate? (1min - anonymous)Recent Discussions
Related Content
DevCentral Quicklinks
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com
Discover DevCentral Connects