F5
303 · Question #417
For a given Virtual Server, the BIG-IP must perform SSL Offload and negotiate secure communication over TLSv1.2 only. What should the BIG-IP Administrator do to meet this requirement?
The correct answer is B. Configure a custom SSL Profile (Client) with a custom TLSV1.2 cipher string. no TLSv1 only disables TLS1.0, TLS1.1 is still used and does not meet the requirements.
Section 1: Implement ASM Deployment
Question
For a given Virtual Server, the BIG-IP must perform SSL Offload and negotiate secure communication over TLSv1.2 only. What should the BIG-IP Administrator do to meet this requirement?
Options
- AConfigure a custom SSL Profile (Client) and select no TLSvl in the options list
- BConfigure a custom SSL Profile (Client) with a custom TLSV1.2 cipher string
- CConfigure a custom SSL Profile (Server) and select no TLSvl in the options list
- DConfigure a custom SSL Profile (Server) with a custom TLSV1.2 cipher string
How the community answered
(26 responses)- A8% (2)
- B73% (19)
- C15% (4)
- D4% (1)
Explanation
no TLSv1 only disables TLS1.0, TLS1.1 is still used and does not meet the requirements.
Topics
#SSL Profile Client#TLSv1.2#cipher string#SSL offload
Community Discussion
No community discussion yet for this question.