Recommended SSL/TLS Settings
Im in the process of disabling medium strength SSL CIPHERS FOR SSL/TLS SERVICE PROFILE following the doc from Palo Alto :
https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA10g000000CmqeCAC
But I have a question before disabling the weak ciphers,
How can I check what ciphers are in use ?
Is there a best practice or recommendation on what protocol settings for TLS needs to be enabled and also what needs to be disabled ?
1189 Views


Just adding this kb from Palo, way to check ssl-negotiation Details after changing the parameters.
https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA10g000000ClVCCA0