Forum Discussion
How to mitigate the SSLv3 vulnerability on server side
we have bigip ltm version 10.2.3. we want to mitigate the SSLv3 on the server (not on F5) because SSL sessions for SSLv3 do not terminate on the F5 Bigip appliances. Any info or reply is appreciated. Thanks in advance.
3 Replies
it depends on your servers, determine their OS / type and google how to turn off certain SSL versions / ciphers.
- truongh_36312
Nimbostratus
oh, you mean in this case, to mitigate sslv3 vulnerability we terminate it in server only and not relate to F5 bigip ltm. thanks
- Brad_Parker
Cirrus
If you are doing SSL straight through to the server, the LTM does not affect SSL. All SSL vulnerabilities and configuration would be at the webserver(except for the management interface of the device itself.)
Help guide the future of your DevCentral Community!
What tools do you use to collaborate? (1min - anonymous)Recent Discussions
Related Content
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com