Web UI Disable TLS 1.1
-
With https://tools.ietf.org/html/draft-ietf-tls-oldversions-deprecate-00 and http://www.nessus.org/u?c8ae820d is there any plans to disable TLS 1.1 on the webUI or maybe there is a temp solution to disable 1.1 to satisfy security scanners.
Thanks.
-
We have made that change for pfSense 2.5.0, since with the newer OpenSSL version there is can support TLS 1.3.
https://redmine.pfsense.org/issues/9607
You can make a change similar to the one on the issue (
aa618753171d9fe8d7f3c46f49a1ea16832e138b
) to limit which versions are used. Just bear in mind that pfSense 2.4.x won't support TLSv1.3. -
Thanks sound good.
Tested and it worked great. Thanks for the quick response.
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.