Forum Discussion

Sa_At_188172's avatar
Sa_At_188172
Icon for Nimbostratus rankNimbostratus
Jan 28, 2016

Multiple VIPs have the CBC, IDEA, DES & POODLE vulnerabilities and below are the details, need help in remidaiting them.

Version: BIG-IP 11.4.1 Build 637.0 Hotfix HF3

 

Current Cipher String: DEFAULT:!RSA+RC4:!SSLv3:!DES:!COMPAT:!ECDHE:!EXPORT:!3DES

 

CBC Vulnerability details: Negotiated with the following insecure cipher suites: TLS 1.0 ciphers: TLS_RSA_WITH_AES_128_CBC_SHA TLS_RSA_WITH_AES_256_CBC_SHATLS 1.1 ciphers: TLS_RSA_WITH_AES_128_CBC_SHA TLS_RSA_WITH_AES_256_CBC_SHATLS 1.2 ciphers: TLS_RSA_WITH_AES_128_CBC_SHA TLS_RSA_WITH_AES_256_CBC_SHA TLS_RSA_WITH_AES_128_CBC_SHA256 TLS_RSA_WITH_AES_256_CBC_SHA256

 

Negotiated with the following insecure cipher suites: TLS 1.0 ciphers: TLS_RSA_WITH_3DES_EDE_CBC_SHA TLS_ECDHE_RSA_WITH_3DES_EDE_CBC_SHATLS 1.1 ciphers: TLS_RSA_WITH_3DES_EDE_CBC_SHA TLS_ECDHE_RSA_WITH_3DES_EDE_CBC_SHATLS 1.2 ciphers: TLS_RSA_WITH_3DES_EDE_CBC_SHA TLS_ECDHE_RSA_WITH_3DES_EDE_CBC_SHA