Description
This article describes how to disable TLS 1.0 and TLS 1.1 in reverse proxy mode.
Scope
FortiWeb.
Solution
In a Reverse Proxy, it is possible to disable TLS 1.0 and TLS 1.1 in the server policy and Server pool.
To disable TLS 1.0 and TLS 1.1 in the server policy, follow these steps:
- Go to Server-policy -> Advanced SSL setting -> SSL connection settings.
- Disable TLS 1.0 and 1.1.
To disable TLS 1.0 and TLS 1.1 in the Server -> Server pool, follow these steps:
- Select the Server pool for which it is desired to disable TLS 1.0 and TLS 1.1.
- Edit the Server-pool rule.
- Under Advanced SSL setting -> SSL connection settings, disable TLS 1.0 and 1.1. This setting is only visible when enabling SSL in the server-pool.