Skip to main content
FortiLearn
New Member
November 11, 2020
Question

Can IPS detect if TLS 1.0 connections are used?

  • November 11, 2020
  • 1 reply
  • 2593 views

Hi,

 

I have seen on fortiguard that there are a lot of TLS signatures available.

So far I have find some who can detect older TLS versions (1.0/1.1) which should not be used anymore.

 

Has somebody experience if it is possible to detect old TLS versions by IPS?

 

Thank you for your feedback.

1 reply

kphed
New Member
August 26, 2021

Hello,

 

Did you ever find an answer to this? Some customers we've upgraded to v6.2.9 are reporting they can access web sites that are supposed to be blocked on Internet Explorer.  However, the same web sites are blocked when Chrome/Mozilla/Edge are used.  I am suspecting it is related to TLS 1.0 no longer supported/inspected but I would like to verify prior to making any recommendations.