This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

How can I change the SSL VPN Control Channel to be TLS 1.2?

I was looking at the connection logs from the stoplight and noticed that the Control Channel was using TLS 1.0/SSL3.0. Is there a way I can change that to use TLS 1.2? I looked through all the VPN options and I didn't see anything that would allow me to make sure only TLS 1.2 was used...



This thread was automatically locked due to age.
Parents
  • As far as i know, XG should use TLS1.2 per default.

     

    The log can show something else but the Connection should be TLS1.2. 

    Check out what the port is offering you with a linux client.

    openssl s_client -host XG.DNS -port 443     / Or your SSLVPN Port

     

    __________________________________________________________________________________________________________________

  • I tested at https://www.ssllabs.com/ssltest and can confirm that TLS 1.2 is used only.

     

    Regards, Jelle

    Sophos XG210-HA (SFOS 18.0.4) on SG210 appliances with Sandstorm and 1x AP55
    Sophos Central with Intercept X Advanced, Device Encryption, Phish Threat, Mobile Control Advanced

    If a post solves your question use the 'This helped me' link.

Reply Children
No Data