CVE-2014-3566: Removing SSLv3 from BIG-IP
The POODLE (CVE-214-03566) vulnerability can force a client to negotiate SSLv3 instead of TLSv1.x ciphers. Then a BEAST-like attack can be conducted against SSLv3 to obtain information from the encry...
Updated Mar 18, 2022
Version 2.0Jeff_Costlow_10
Historic F5 Account
Joined January 26, 2005
Jeff_Costlow_10
Historic F5 Account
Joined January 26, 2005
Fotis_191218
Jun 04, 2015Nimbostratus
Is there a way to fallback CVE-2014-3566 (SSLv3+SSLv2)? I followed the steps (https://support.f5.com/kb/en-us/solutions/public/15000/700/sol15702.html) for 10.2.4 HF11 version and now I will enable again SSLv3 and SSLv2, how can I do this? I couldn’t find any documentation. Thank you in advance!