Forum Discussion
neeeewbie
MVP
2 months agoSSL cipher
Hi guys
TLS is weird.
Why is this behavior happening?
The server that receives the client hello sends an alert.
Transport Layer Security TLSv1.2 Record Layer: Handshake Protocol...
neeeewbie
MVP
2 months agoIt's as follows:
ltm profile server-ssl /Common/aaa_SSL_Server_Profile {
app-service none
defaults-from /Common/serverssl
options { dont-insert-empty-fragments no-tlsv1.1 no-tlsv1.2 no-sslv3 }
}
I don't know anything about the server-side configuration other than that it only supports TLS 1.0.
The above is a TCP packet dump. Do you know what causes these packets to appear?
Daniel_Wolf
MVP
2 months agobtw. this snippet won't load
root@(awaf)(cfg-sync Standalone)(Active)(/Common)(tmos)# load sys config from-terminal merge verify
Enter configuration. Press CTRL-D to submit or CTRL-C to cancel.
ltm profile server-ssl /Common/aaa_SSL_Server_Profile {
app-service none
defaults-from /Common/serverssl
options { dont-insert-empty-fragments no-tlsv1.1 no-tlsv1.2 no-sslv3 }
}
Validating configuration...
01b40001:3: A cipher group must be configured when TLS 1.3 is enabled (validation failed for profile /Common/aaa_SSL_Server_Profile).
Unexpected Error: Validating configuration process failed.
Recent Discussions
Related Content
DevCentral Quicklinks
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com
Discover DevCentral Connects