Forum Discussion
Kevin_Stewart
Employee
Oct 18, 2018Here's what the parent clientssl profile looks like in 14.0.0.1:
root@(bigip1)(cfg-sync Standalone)(TimeLimitedModules::Active)(/Common)(tmos) list ltm profile client-ssl clientssl
ltm profile client-ssl clientssl {
alert-timeout indefinite
allow-dynamic-record-sizing disabled
app-service none
authenticate once
authenticate-depth 9
ca-file none
cache-size 262144
cache-timeout 3600
cert default.crt
cert-extension-includes { basic-constraints subject-alternative-name }
cert-key-chain {
default {
cert default.crt
key default.key
}
}
chain none
cipher-group none
ciphers DEFAULT
client-cert-ca none
crl-file none
handshake-timeout 10
inherit-ca-certkeychain false
inherit-certkeychain false
key default.key
maximum-record-size 16384
mod-ssl-methods disabled
mode enabled
options { dont-insert-empty-fragments no-tlsv1.3 }
passphrase none
peer-cert-mode ignore
peer-no-renegotiate-timeout 10
renegotiate-max-record-delay indefinite
renegotiate-period indefinite
renegotiate-size indefinite
renegotiation enabled
secure-renegotiation require
strict-resume disabled
unclean-shutdown enabled
}