Forum Discussion
Ken_B_50116
Cirrostratus
Nov 04, 2015Question about forcing TLS 1.2 and SOL13171
I found article SOL13171 that says to just use "TLSv1_2" in the Ciphers field, and this will force TLS 1.2. That sounds simple enough, but without also including "NATIVE" in the field, how can the e...
Ken_B_50116
Cirrostratus
Nov 05, 2015Currently the profile is just default.
How is
TLSv1_2 functionally different than DEFAULT:!TLSv1:!TLSv1_1? The SOL article says to use just TLSv1_2, but you suggestion makes more sense because it's starting with the default suites and then stripping out the bad TLS versions.Brad_Parker
Cirrus
Nov 05, 2015Just TLSv1_2 on its own will also contain ADH, MD5, and RC4 ciphers which are all considered insecure at this point. The default string will not contain those. RC4 was remove from DEFAULT in 11.6 and ADH and MD5 removed in earlier versions.
Help guide the future of your DevCentral Community!
What tools do you use to collaborate? (1min - anonymous)Recent Discussions
Related Content
DevCentral Quicklinks
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com
Discover DevCentral Connects