Forum Discussion
Kevin_K_51432
Oct 27, 2014Historic F5 Account
Greetings, Here's the default apache cipher list:
DEFAULT:!aNULL:!eNULL:!LOW:!RC4:!MD5:!EXP
Can you simply append !SSLv3 to the list to disable SSLv3?
tmsh modify sys httpd ssl-ciphersuite 'DEFAULT:!aNULL:!eNULL:!LOW:!RC4:!MD5:!EXP:!SSLv3'
tmsh save sys config
bigstart restart httpd
Looks to have been added to /etc/httpd/conf.d/ssl.conf and SSLv3 no longer negotiates.
SSLCipherSuite DEFAULT:!aNULL:!eNULL:!LOW:!RC4:!MD5:!EXP:!SSLv3
Kevin