cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1470
Views
0
Helpful
3
Replies

SSL cipher suite in ASA : Server Vs Client

PacketSpartan
Level 1
Level 1

We need to change TLS 1.0 to TLS 1.2, We will like to do this for our external and eventually our internal (client) 

 

If we change the Server from 1.0 to  1.2, will this break any services that are facing the WEB that only accepts TLS 1.0. We have Citrix storefront servers on TLS 1.0 I believe it will as the FW will no longer be allowing TLS 1.0 connections

 

Can someone clear the confusion? 

CCNA R&S
1 Accepted Solution

Accepted Solutions

@PacketSpartan 

The server version and client version commands you refer to are for traffic "to" the ASA itself, such as management via ASDM or SSL-VPN, not "through" the ASA such as any website hosted inside or outside.

View solution in original post

3 Replies 3

@PacketSpartan 

The server version and client version commands you refer to are for traffic "to" the ASA itself, such as management via ASDM or SSL-VPN, not "through" the ASA such as any website hosted inside or outside.

Cheers Rob, 

 

Appreciate the prompt responce 

CCNA R&S

The SSL configuration is between client and server and the ASA will not bother with this so long as the port that is being secured by SSL is allowed there the ASA.

--
Please remember to select a correct answer and rate helpful posts
Review Cisco Networking for a $25 gift card