poodle
2 TopicsMitigating Poodle Attack
Hi All/DC Experts, After I changed the Cipher Strength to: NONE:RC4:!SSLv3:@STRENGTH and scan my website it says vulnerable to Poodle Attack, but we solved the issue on the insecure connection to Google Chrome, Mozilla and IE. Needed your expertise in security. Thanks, -Nat435Views0likes1CommentiRule for checking connection's SSL/TLS protocol version
Hi, In view of POODLE, we are going to disable SSLv3. And we want to find out those clients that are still using it before implementation. But it seems that there are no method to check connection's SSL/TLS protocol version in iRule. SSL::cipher version only tells the protocol version that introduce the negotiated cipher. And there are no event for intercepting traffic from ADC to client. I wonder if there are any function in iRule that can do that.852Views0likes12Comments