yuanqiang_22112NimbostratusDec 23, 2016perfect forward secrecy cipherBIG-IP LTM2000 V11.4.1 , I want to use pfs cipher and tls1.2 for ssl offloading ; 11.4.1 supported Perfect Forward Secrecy ? how to configured PFS cipher.
1 ReplyReplies sorted by Most LikedSort ByMost LikedOldestNewestVijay_ECirrusDec 23, 201611.4.1 supports TLS1.2 and ECDHE and hence, supports PFS. - this has information on cipher suites supported by different F5 code versions. PFS is provided by DHE/ECDHE. In order to check if your code version supports DHE/ECDHE, check output from tmm --clientciphers DEFAULT
Vijay_ECirrusDec 23, 201611.4.1 supports TLS1.2 and ECDHE and hence, supports PFS. - this has information on cipher suites supported by different F5 code versions. PFS is provided by DHE/ECDHE. In order to check if your code version supports DHE/ECDHE, check output from tmm --clientciphers DEFAULT
Recent DiscussionsBIG-IP DNS: Check Status Of Multiple Monitors Against Pool MemberOpen Redirection MitigationF5Access | MacOS Sonomaenable tls1.2 on management interface on F5 ltm running version 10.x[ASM] - what is "Browser Challenge file" ?
Related ContentLightboard Lessons: Perfect Forward SecrecyLightboard Lesson: Perfect Forward Secrecy Inspection VisibilityHeartbleed and Perfect Forward SecrecyLightboard Lessons: Unexpected Side Effects of Perfect Forward SecrecyF5 Distributed Cloud's Secure Multi-Cloud Networking (MCN) and SAP S/4 HANA: The perfect match