CVE-2014-3566: Removing SSLv3 from BIG-IP
The POODLE (CVE-214-03566) vulnerability can force a client to negotiate SSLv3 instead of TLSv1.x ciphers. Then a BEAST-like attack can be conducted against SSLv3 to obtain information from the encry...
Updated Mar 18, 2022
Version 2.0Jeff_Costlow_10
Historic F5 Account
Joined January 26, 2005
Jeff_Costlow_10
Historic F5 Account
Joined January 26, 2005
Neha_51838
Oct 17, 2014Historic F5 Account
SSL profiles have the options list, where "No SSLv3" can be selected to disable SSLv3 on all traffic using that profile. Similarly, the option "No TLSv1" can be selected to disable all TLS1.0 traffic, if so desired (as asked by jddimas above).