11-27-2018 09:39 PM - edited 02-21-2020 08:30 AM
Hello Friends,
I am using Cisco asa 5512 on 9.8.2. due to recent security measurement we have enabled TLS 1.2 with custom ciphers.
However, SSL LAB shows there is no support for secure renegotiation.
I wanted to know if asa support this feature. Please share your information,
Thank You.
11-28-2018 11:11 AM
The ASA does not support Secure Renegotiation AFAIK. Below is the enhancement bug raised to enable support for RFC5746, but this has not been fixed:
https://bst.cloudapps.cisco.com/bugsearch/bug/CSCud62637
I think you results on SSLlabs will always be capped at A- because of this.
11-28-2018 11:25 PM
11-29-2018 05:40 AM
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide