Cipher Suites Supported in SonicWall UTM appliances

Description

The following is a list of cipher suites supported in SonicWall UTM appliances.

Resolution

  • With the option Enable TLS compatible mode under the Diag page enabled, legacy protocols are supported:
    Image CAUTION: This option is not secure and it should be disabled at all times.

     

    • With the option Enable TLS compatible mode under the Diag page disabled, only the following ciphers are supported.



      • TLSv1.1:
        TLS_RSA_WITH_3DES_EDE_CBC_SHA (rsa 2048)
        TLS_RSA_WITH_AES_128_CBC_SHA (rsa 2048)
        TLS_RSA_WITH_AES_256_CBC_SHA (rsa 2048)

      • TLSv1.2:
        TLS_RSA_WITH_3DES_EDE_CBC_SHA (rsa 2048)
        TLS_RSA_WITH_AES_128_CBC_SHA (rsa 2048)
        TLS_RSA_WITH_AES_128_CBC_SHA256 (rsa 2048)
        TLS_RSA_WITH_AES_128_GCM_SHA256 (rsa 2048)
        TLS_RSA_WITH_AES_256_CBC_SHA (rsa 2048)
        TLS_RSA_WITH_AES_256_CBC_SHA256 (rsa 2048) 
        TLS_RSA_WITH_AES_256_GCM_SHA384 (rsa 2048) 

    NOTE: TLSv1.1 can be also disabled using the option Disable TLSv1_1 from the Diag Page.

     

     

Related Articles

  • How to apply CFS policies to SAML User Groups using OKTA as IdP?
    Read More
  • How to block ICMP (Ping ) using Application control
    Read More
  • How to configure Link Aggregation
    Read More
not finding your answers?