Loading...
Loading...
f5-cc-stip-ciphers and f5-cc-ciphers cipher-rule use the DEFAULT DH group. The DEFAULT DH group was adding X25519, which is not a Common Criteria-approved cipher
A virtual server will accept a connection with the X25519 DH group
- Configure clientssl and serverssl with "f5-cc-stip-ciphers" or "f5-cc-ciphers" - Configure virtual server with the same clientssl or serverssl profile
Create a custom cipher rule with the excluded X15529 DH group
Removed X25519 DH group from "f5-cc-stip-ciphers" or "f5-cc-ciphers" cipher-rule
Click on a version to see all relevant bugs
F5 Integration
Learn more about where this data comes from
BugZero Plan
Streamline upgrades with automated vendor bug scrubs
BugZero Prevent
Wish you caught this bug sooner? Get proactive today.