Forum Discussion
richardgamboac1
Nimbostratus
Hi eaa,
Thank you for your response. I have two questions, please.
- What unpatched clients means? And this field (secure-renegotiation) works for ssl client profiles too?.
- If the back-ends servers have an insecure certificate created by itself (iis servers), do F5 needs the back-end servers certificate on server ssl profile or just need the server so-insecure-compatible profile?
- thank you!
boneyard
Oct 13, 2019MVP
unpatched means server that don't support secure renegotiation yet. and yes a similar option is available in the client side SSL profile.
with most default server SSL profile the certificate is not checked at all, so that will work by default. the secure renegotiation is not related to the certificate, it is related to renegotiation a session later on.