Forum Discussion
bkhowson
Nimbostratus
Apr 26, 2014SSLLabs A+, F5 LTM 11.4
We are testing a configuration to achieve an A+ grade on the SSLLabs.com server test.
The "DEFAULT" ciphers is documented in sol13156 and sol13171.
DEFAULT = NATIVE:!MD5:!EXPORT:!DES:!DHE:...
Nicolas_125554
Nimbostratus
Dec 09, 2014i have 11.4.1 with the following setting DEFAULT:!SSLv3:!RC4:ECDHE:!AES256-SHA256:!AES256-SHA:@STRENGTH and i get F, because of POODLE (TLS) any suggestions
Feb 17, 2015
Hello,
did you try with this syntax ?
tmm --clientciphers DEFAULT:ECDHE:-AES256-SHA256:-AES256-SHA:-SSLv3:-RC4:@STRENGTH
ID SUITE BITS PROT METHOD CIPHER MAC KEYX
0: 10 DES-CBC3-SHA 192 TLS1 Native DES SHA RSA
1: 10 DES-CBC3-SHA 192 TLS1.1 Native DES SHA RSA
2: 10 DES-CBC3-SHA 192 TLS1.2 Native DES SHA RSA
3: 10 DES-CBC3-SHA 192 DTLS1 Native DES SHA RSA
4: 47 AES128-SHA 128 TLS1 Native AES SHA RSA
5: 47 AES128-SHA 128 TLS1.1 Native AES SHA RSA
6: 47 AES128-SHA 128 TLS1.2 Native AES SHA RSA
7: 47 AES128-SHA 128 DTLS1 Native AES SHA RSA
8: 60 AES128-SHA256 128 TLS1.2 Native AES SHA256 RSA
Help guide the future of your DevCentral Community!
What tools do you use to collaborate? (1min - anonymous)Recent Discussions
Related Content
DevCentral Quicklinks
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com
Discover DevCentral Connects