05-12-2022 04:40 AM
I have a question about disabling TLS 1.0 & 1.1 on ASA appliance. We have AnyConnect setup for our remote users and we also have a site-to-site vpn tunnel to a remote office. My question is by changing the settings identified in the below article, will this also affect our current site-to-site vpn tunnel connection? Or does the changing of these settings only affect the web url used for our AnyConnect users and ASDM?
https://freddejonge.nl/cisco-asa-disable-ssl-3-0-settings-and-change-it-to-tls-v1-2/
Thx for any assistance provided
Solved! Go to Solution.
05-12-2022 04:45 AM - edited 05-12-2022 04:47 AM
@manofsteel03 changing the TLS settings will have no impact on the Site-to-Site VPN, as they use IKE + IPSec.
You are correct, changing the TLS settings would affect ASDM, Clientless VPN and AnyConnect VPN - if using SSL/TLS and not IPSec.
05-12-2022 04:45 AM - edited 05-12-2022 04:47 AM
@manofsteel03 changing the TLS settings will have no impact on the Site-to-Site VPN, as they use IKE + IPSec.
You are correct, changing the TLS settings would affect ASDM, Clientless VPN and AnyConnect VPN - if using SSL/TLS and not IPSec.
05-12-2022 05:19 AM
Thx for the feedback!
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide