Supported list of ciphers for the Load Balancer Service in NSX 6.2.4
search cancel

Supported list of ciphers for the Load Balancer Service in NSX 6.2.4

book

Article ID: 336566

calendar_today

Updated On:

Products

VMware NSX

Issue/Introduction

This articles provides list of supported ciphers in NSX 6.2.4.

NSX 6.2.4 release has a list of applicable ciphers for any Load Balancer Service application profile.

Symptoms:
When trying to add or configure any new ciphers to NSX Edge Load Balancer under Application Profile, you see this symptom:

The required cipher is not showing and/or shows the default.

Environment

VMware NSX for vSphere 6.2.x

Resolution

Currently the following list of ciphers can be applied under Application Profiles:

  • DEFAULT (!aNULL:kECDH+AES:ECDH+AES:RSA+AES:@STRENGTH)
  • ECDHE-RSA-AES128-GCM-SHA256
  • ECDHE-RSA-AES256-GCM-SHA384
  • ECDHE-RSA-AES256-SHA
  • ECDHE-ECDSA-AES256-SHA
  • ECDH-ECDSA-AES256-SHA
  • ECDH-RSA-AES256-SHA
  • AES256-SHA
  • AES128-SHA
  • DES-CBC3-SHA

Notes:

  • These ciphers can be applied as a single cipher. Currently, you cannot apply multiple ciphers under Application Profiles.
  • For more information on configuring application profiles, see the Create an Application Profile section of the NSX Administration Guide.



Additional Information