Options
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
TLS 1.1
Good Morning,
My customer is using a Fortigate to protect their web servers and we are using load balancing on the fortigate for this.
They want to disable TLS 1.0 on the fortigate, can someone advise how i do this please?
Thanks,
Dave
1 REPLY 1
Options
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Hi Dave,
Could it be this you are looking for:
ssl-cipher-suites
The following are the variables for config ssl-cipher-suites, and are available only if type is server‑load-balance and ssl-algorithm is custom.
cipher <cipher_name>
Enter the cipher name. For a list of available ciphers, enter set cipher ?
versions {ssl‑3.0 tls‑1.0 tls‑1.1}
Enter the algorithm versions to support.
ssl‑3.0 tls‑1.0 tls‑1.1
------------------
You will find it under:
config firewall vip
edit <your vip>
FCNSA, FCNSP
---
FortiGate 200A/B, 224B, 110C, 100A/D, 80C/CM/Voice, 60B/C/CX/D, 50B, 40C, 30B
FortiAnalyzer 100B, 100C
FortiMail 100,100C
FortiManager VM
FortiAuthenticator VM
FortiToken
FortiAP 220B/221B, 11C
FCNSA, FCNSP---FortiGate 200A/B, 224B, 110C, 100A/D, 80C/CM/Voice,
60B/C/CX/D, 50B, 40C, 30BFortiAnalyzer 100B, 100CFortiMail
100,100CFortiManager VMFortiAuthenticator VMFortiTokenFortiAP 220B/221B,
11C