Article ID: 191414
ACF2 - DB2 Option
ACF2 for zVM
ACF2 - z/OS
ACF2 - MISC
LDAP SERVER FOR Z/OS
PAM CLIENT FOR LINUX ON MAINFRAME
WEB ADMINISTRATOR FOR TOP SECRET
Is there anything to restrict the ssl protocol to TLSv1.2 or higher, so we don't use the less secure v1 or v1.1??
Release : 15.1
Component : CA LDAP Server for z/OS
LDAP uses TLSProtocolMin which specifies the minimum SSL/TLS protocol version that will be negotiated. When the server does not support at least this version, the SSL handshake fails.
Change the slapd.conf to set the TLSProtocolMin to TLS1.2.