Supported list of ciphers for the Load Balancer Service in NSX 6.2.4
book
Article ID: 336566
calendar_today
Updated On:
Products
VMware NSX
Issue/Introduction
This articles provides list of supported ciphers in NSX 6.2.4.
NSX 6.2.4 release has a list of applicable ciphers for any Load Balancer Service application profile.
Symptoms:
When trying to add or configure any new ciphers to NSX Edge Load Balancer under Application Profile, you see this symptom:
The required cipher is not showing and/or shows the default.
Environment
VMware NSX for vSphere 6.2.x
Resolution
Currently the following list of ciphers can be applied under Application Profiles:
- DEFAULT (!aNULL:kECDH+AES:ECDH+AES:RSA+AES:@STRENGTH)
- ECDHE-RSA-AES128-GCM-SHA256
- ECDHE-RSA-AES256-GCM-SHA384
- ECDHE-RSA-AES256-SHA
- ECDHE-ECDSA-AES256-SHA
- ECDH-ECDSA-AES256-SHA
- ECDH-RSA-AES256-SHA
- AES256-SHA
- AES128-SHA
- DES-CBC3-SHA
Notes:
- These ciphers can be applied as a single cipher. Currently, you cannot apply multiple ciphers under Application Profiles.
- For more information on configuring application profiles, see the Create an Application Profile section of the NSX Administration Guide.
Feedback
thumb_up
Yes
thumb_down
No