Saturday, 22 July 2017

Queries on TLS

Which is the oldest version of WebSphere Application Server that supports TLS 1.2?

Java 7 is not required. WebSphere has supported TLS1.2 since version 7.0.0.23. Essentially every in-service release of WebSphere supports TLS1.2 (7.0 will go out of service next year)

Does Websphere support multiple SSL versions?

There is an alternative option, SSL_TLSv2, which will enable support for TLSv1.0, TLSv1.1, and TLSv1.2 in the environment. Please use this setting SSL_TLSv2 in environments where support for multiple TLS protocols is required, or if you are not sure whether your WAS environment interacts with other servers or clients using non-TLSv1.2 protocols then, you can configure WAS to use SSL_TLSv2 using same steps as given in the above.

Note:

Without poddle fix and configured WAS to use SSL_TLSv2

SSL_TLSv2 ==> Enables all SSL v3.0 and TLS v1.0, v1.1 and v1.2 protocols. Accepts SSLv3 or TLSv1 hello encapsulated in an SSLv2 format hello.

If you installed Poddle fix (will disable SSLv3 ) and configured WAS to use SSL_TLSv2

SSL_TLSv2 ==> Enables these three TLS v1.0, v1.1 and v1.2 protocols.

So, changing the QoS settings to SSL_TLSv2 allows SSL Handshakes to multiple TLS versions when required.
x

No comments:

Post a Comment