Disabling sslv2 on linux for port 636.

Rohit khaladkar rohit.khaladkar at gmail.com
Tue Jun 2 10:30:10 UTC 2009


Hi All,I want to disable ssl2 on a linux server for Port 636. Here is the
procedure that I followed :

1)Edit ssl.conf and added following entries in it .

SSLCipherSuite HIGH:!SSLv2:!ADH:!aNULL:!eNULL:!NULL
SSLProtocol -All +SSLv3 +TLSv1

2)Restarted Apache service.

3)Restarted network.

I checked if ssl2 is disabled using the following command :

openssl s_client -connect hostname:636 -ssl2

where hostname= server name

But it still shows me the certificate. I even tried rebooting the machine ,
but no luck.

Am I missing anything here?.

-- 
Thanks!
Rohit Khaladkar



More information about the redhat-list mailing list