LogJams, DHE Parameters, and Other Obstacles to TLS Excellence
If you're presently volunteering to wear the hat of “SSL/TLS Vulnerability Manager”, then you’ve come to the realization that patching one vulnerability often raises others. In wake of revelations ab...
Published Jul 07, 2015
Version 1.0BAMcHenry
Ret. Employee
Joined March 13, 2008
BAMcHenry
Ret. Employee
Joined March 13, 2008
BAMcHenry
Jul 23, 2015Ret. Employee
@Jie, Single DH is not the default. However, BIG-IP does automatically rotate DH parameters (by default) to prevent exploits do to reuse.