mod_ssl update unexpectedly disables TLSv1.1 and TLSv1.2
Issue
Upgrading httpd
and mod_ssl
from version 2.2.15-31.el6_5
or earlier, to 2.2.15-39.el6
or later, disablesTLSv1.1
and TLSv1.2
.
Environment
- Red Hat Enterprise Linux 6
httpd
andmod_ssl
version2.2.15-39.el6
or later
Where httpd
is configured to use a limited set of protocols, starting from disabling all (-ALL
), for example:
SSLProtocol -ALL +TLSv1
Subscriber exclusive content
A Red Hat subscription provides unlimited access to our knowledgebase, tools, and much more.