Forum Discussion
Sriram_Shanmuga
Altostratus
Oct 03, 2018How to disable weak cipher from Client SSL Profile
Hi,
We have disabled few ciphers and we have rating "A" in qualys ssl checker portal.
We have a requirement to disable weak ciphers as well.
Could some one advice how to disable weak ciphers.
Pl...
- Oct 03, 2018
By using DEFAULT:@STRENGTH command you can preferred the ciphers to use only Strength.
there are two ideas coming to my mind when reading your question. the first one is to use stats profile.
Custom Reporting with iRules by Joe
http://devcentral.f5.com/Default.aspx?tabid=63&articleType=ArticleView&articleId=66
the other one is a tricky one (don't laugh please :p). i think we may create 3 pools with exact same member. then use irule to send traffic to pool based on source subnet.
hope this helps.
Thanks for the full steatment which will help a lot to exclude the Cipher Suites.
My question is if i disable those Cipher Suites that means user can't communicate with that Cipher Suites to my web server. So, isn't that lead to limtating access to the site my disabling those cihper Suites.
Recent Discussions
Related Content
DevCentral Quicklinks
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com
Discover DevCentral Connects