Forum Discussion
TLS record layer version
Thanks for the information Sanjay...
Does this means F5 will accept any version of TLS record layer coming from the client.
Actually, we need a confirmation that our device will accept any version of TLS record layer coming from the client. And how do we confirm this?
Regards
Please note, ssl.outerrecordtls1_0 this variable is for serverside TLS session. i.e. from F5 to the server where F5 initiates CLIENT HELLO towards the server.
For client side TLS session, as mentioned earlier there is no TLS record layer version option. BIGIP accepts all TLS record layer version, the one which matters is CLIENT HELLO version coming from the client. If that's not matching what is allowed on client ssl profile, BIGIP would reset the connection.
Are you having any issue in particular with this?
Recent Discussions
Related Content
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com