CA Single Sign On Secure Proxy Server (SiteMinder)CA Single Sign On Agents (SiteMinder)CA Single Sign On Federation (SiteMinder)CA Single Sign On SOA Security Manager (SiteMinder)SITEMINDER
Issue/Introduction
We're running an AdminUI (WAMUI) and we'd like to know how to enable TLSv1.2 and how we can verify that the AdminUI uses it when the browser connects to it ?
Environment
AdminUI 12.8SP3 on RedHat 7
Resolution
At first glance, to configure the AdminUI in SSL, you have to follow the following documentation :
(Optional) Configure the Administrative UI to Use an SSL (HTTPS) Connection https://techdocs.broadcom.com/content/broadcom/techdocs/us/en/ca-enterprise-software/layer7-identity-and-access-management/single-sign-on/12-8-03/installing/install-the-administrative-ui/install-the-administrative-ui-on-linux-stand-alone.html
Then, AdminUI 12.8 supports out of the box TLSv1.2 and TLSv1.1 :
TLS Protocols Supported by the Administrative UI
Most current web browsers support the SSL protocols TLSv1.2 and TLSv1.1 by default.
In order to verify that the SSL handshake is made by TLSv1.2, access the AdminUI with a browser supporting TLSv1.2, and run the full network traces on the AdminUI machine.