Guest

Preview Tool

Cisco Bug: CSCuo27497 - WSA fails SSL handshake from TLS 1.X clients

Last Modified

Nov 27, 2020

Products (1)

  • Cisco IronPort Web Security Appliance Software

Known Affected Releases

7.7.0-804 7.7.5-835 8.0.0-408 8.0.0-503 8.0.0-504 8.0.5-075 8.0.5-076 8.0.6-012

Description (partial)

Symptom:
Https decrypted connections can fail through the WSA, if you have upgraded the version of
openssl on your client for the heartbleed defect(1.0.1g).

Conditions:
Any client making an openssl connection out to the Internet through a WSA from a client using
openssl 1.0.1g, will fail if TLS1.2 (or 1.1) is allowed from the client.
Bug details contain sensitive information and therefore require a Cisco.com account to be viewed.

Bug Details Include

  • Full Description (including symptoms, conditions and workarounds)
  • Status
  • Severity
  • Known Fixed Releases
  • Related Community Discussions
  • Number of Related Support Cases
Bug information is viewable for customers and partners who have a service contract. Registered users can view up to 200 bugs per month without a service contract.