Forum Discussion
OpenSSL workaround and fix?
There is no SSL work around given for the June 5th OpenSSL bugs for client connections.
We use a layered virtual server for sending requests to a remote box over TLS.
I assume this is vulnerable? (although it may depend on the other end, which it believe is IIS, so not OpenSSL, which eliminates some of the issues).
Is there any mitigation I should/can implement? Any expected date for a release of 11.5.1 fix for OpenSSL.
http://support.f5.com/kb/en-us/solutions/public/15000/300/sol15325.html
1 Reply
- What_Lies_Bene1
Cirrostratus
If you are NOT using COMPAT ciphers in your SSL profiles, likely only your management interface is vulnerable. Where your real servers are concerned, I'm not sure but I'd suggest you check; OpenSSL is hidden inside many, many products.
Help guide the future of your DevCentral Community!
What tools do you use to collaborate? (1min - anonymous)Recent Discussions
Related Content
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com