Forum Discussion
TLS
I am trying to set up my LTM so that it will only accept TLS connections. They are asking that we do away with SSLv3 completely. I am not sure how to do that without causing interruptions, we have REST and JSON coming in as well as HTTP traffic. For most services, I run a separate port to the servers, I have one that run 443. That server is ColdFusion, and running SSLv3, and I have not been able to get it to run the proper cypher suite to the LTM. Any suggestions?
1 Reply
- Andy_McGrath
Cumulonimbus
SSL protocol and ciphersuite configuration is under the client ssl profiles (for clientside) and server ssl profiles (for serverside), within the profiles you have the option of setting ciphersuite and protocol the following links should help you.
sol13163: SSL ciphers supported on BIG-IP platforms (11.x - 12.x)
sol15194: Overview of the BIG-IP SSL/TLS cipher suite
sol8802: Using SSL ciphers with BIG-IP Client SSL and Server SSL profiles
If you're running 11.5.0 or above SSLv3 is disabled in the 'DEFAULT' ciphersuite list, anything earlier changing the ciphersuite setting in the ssl profile to 'DEFAULT:!SSLv3' should work.
Help guide the future of your DevCentral Community!
What tools do you use to collaborate? (1min - anonymous)Recent Discussions
Related Content
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com