Cisco Support Community
cancel
Showing results for 
Search instead for 
Did you mean: 
Announcements

Welcome to Cisco Support Community. We would love to have your feedback.

For an introduction to the new site, click here. If you'd prefer to explore, try our test area to get started. And see here for current known issues.

New Member

SSL Proxy list: cipher suite

In my proxy list I choose to use a cipher suite rsa-with-3des-ede-cbc-sha.

What if the client doesn't support this? Does it fallback to another? Is there a difference in performance rsa-with-3des-ede-cbc-sha VS rsa-with-rc4-128-sha? 168 bit encryption vs 128 bit encryption.

For the moment i'm using rsa-with-3des but when i browse to the site i get 128 bit SSL Secured.

Any help on this subject would be nice.

Kind regards,

Frederik De Muyter.

Kind regards.

2 REPLIES
Cisco Employee

Re: SSL Proxy list: cipher suite

Frederik

You can configure multiple cipher and give them a weight so that if 3des is not available on the client another one will be used.

If you do not configure another one however, then the connection should be dropped.

Gilles.

New Member

Re: SSL Proxy list: cipher suite

Thank you again Gilles.

149
Views
5
Helpful
2
Replies