Heads Up :
The post you are writing will appear in a public forum. Please ensure all content is appropriate for public consumption. Review the employee guidelines for the community here.
Hi All,A security audit discovered one of our application's SSL termination, resides our ACE, supports SSL Renegotiation, which is, in their opinion, a security risk. As far I know, it is not supported to turn off this feature on ACE. Anyway, I want ...
Hi,I understand that this is disalbled by default, but it does stil works, when client starts the renegotiation, as Torbjörn explained detailed. So the question remains the same. How could I avoid to accept client initiated renegotiation?Regards,Tam...
This the same, I answered for Jorge too vie e-mail, but it doesn't included in the thread. Sorry for that!My running version is already posted in the first post. Please let me know, if there is any version to disable SSL rehandshake by clients!