How to force java server to accept only tls 1.2 and reject tls 1.0 and tls 1.1 connections

前端 未结 3 1044
佛祖请我去吃肉
佛祖请我去吃肉 2020-11-27 17:19

I have a HTTPS web service running on Java 7. I need to make changes so that this service only accepts TLS1.2 connection and reject SSL3, TLS1.0 and TLS1.1.

I have ad

3条回答
  •  无人及你
    2020-11-27 18:17

    I have also done the same changes in "/java/jdk1.7.0_79/jre/lib/security"-java.security file but some of clients are still able to call my services with SSL protocol.

    ----Changes jdk.tls.disabledAlgorithms=SSL,SSLv2,SSLv3, TLSv1, TLSv1.1,MD5, SSLv3, DSA, RSA keySize < 2048

提交回复
热议问题