Re: TLSv1 rejection

Lewis G Rosenthal <[email protected]>
Newsgroups gmane.mail.cgatepro.general
Message-ID <[email protected]>
On 01/26/16 12:12 pm, James Moe wrote:
> -----BEGIN PGP SIGNED MESSAGE-----
> Hash: SHA1
>
> On 01/25/2016 04:09 PM, Lewis Rosenthal wrote:
>    Thanks for all the info!
>

You bet!

>> Look up PKI (https://www.communigate.com/communigatepro/PKI.html).
>>
>>
>    That appears to be the doc for the latest version. It does not match
> what I see for v5.4.11.

That's true. For 5.4.11, try 
<protocol>://<yourdomain>:<port>/Guide/PKI.html#TLS to access the help for 
the installed version.

Your 5.4.11 and my 5.4.10 should align pretty well, in this regard.

>> FWIW, my own startup settings on 5.4.10 on OS/2 utilize the
>> -TLSServerHelloExtensions option.
>>
>    I tried that option. It made no difference.
>    Sonicwall support recommended disabling TLSv1 encryption; that
> worked. Another method is to upgrade CGpro; the price is a little
> steep for our small business, though.
>

In my case, I added the above because secure connections from by webOS 
devices were failing after upgrading to 5.4.10 from 5.1 or 5.2.

I take it by disabling TLSv1 encryption, you are referring to doing that in 
the SonicWALL and not disabling CGP's TLS.

-- 
Lewis
-------------------------------------------------------------
Lewis G Rosenthal, CNA, CLP, CLE, CWTS, EA
Rosenthal & Rosenthal, LLC                www.2rosenthals.com
visit my IT blog                www.2rosenthals.net/wordpress
IRS Circular 230 Disclosure applies   see www.2rosenthals.com
-------------------------------------------------------------


#############################################################
This message is sent to you because you are subscribed to
  the mailing list <[email protected]>.
To unsubscribe, E-mail to: <[email protected]>
To switch to the DIGEST mode, E-mail to <[email protected]>
To switch to the INDEX mode, E-mail to <[email protected]>
Send administrative queries to  <[email protected]>
lmpx.com only provides a reader for public news (NNTP) servers. It is not affiliated with the servers or forums shown here and is not responsible for the content of articles, which is written by their respective authors.