Forum Discussion
nathe
Cirrocumulus
Nov 17, 2009SSL redirect iRule
Afternoon,
We have a Big-IP ASM appliance (v9.4.4) in front of our Corporate internet site. We need to restrict customers from connecting with less than 128 bit encryption and hope to r...
hoolio
Cirrostratus
Nov 18, 2009Hi Nathan,
In order to send the redirect, you have to allow the weak cipher in the client SSL profile. It's not actually a vulnerability though as you're not allowing a client with a weak cipher to connect to anything beyond the LTM. It will still show up as an issue in a pen test, but it's not a true problem.
Aaron
Help guide the future of your DevCentral Community!
What tools do you use to collaborate? (1min - anonymous)Recent Discussions
Related Content
DevCentral Quicklinks
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com
Discover DevCentral Connects