Forum Discussion

mikeshermanit_2's avatar
mikeshermanit_2
Icon for Nimbostratus rankNimbostratus
Mar 01, 2017

Cipher DEFAULT:!TLSv1 ?

This is the value in ciphers filed on one of my ssl profiles.

 

Does this mean "force TLSv1?"

 

2 Replies

  • JG's avatar
    JG
    Icon for Cumulonimbus rankCumulonimbus

    It means: Use default ciphers but hard-disabe all ciphers for TLSv1, effectively making TLSv1 unusable. A better way of disabling the protocol is to use "options" in your ssl profile. There have been some very good articles about ciphers in the past few days in devcentral's article section.

     

    Edit:

     

    See Cipher Suite Practices and Pitfalls .