
Can I change FF (on Samsung S2 tablet) settings to reflect enabling of SSL 3.0, disabling of SSL 2.0, enabling of TLS 1.0 and 1.1 and disabling of TLS 1.2?
In order to log into secure DoD site with PIV I require the above settings. Can I make these changes?
All Replies (2)
hi, this won't be possible - since ssl 3.0 is severely broken, no modern webbrowser is allowed to support it any more: https://tools.ietf.org/html/rfc7568 ("SSLv3 MUST NOT be used. Negotiation of SSLv3 from any version of TLS MUST NOT be permitted.")
ZenRN said
In order to log into secure DoD site with PIV I require the above settings. Can I make these changes?
Not very a secure website if they are expecting you to use a old browser or to downgrade these settings.
https://blog.mozilla.org/security/2014/10/14/the-poodle-attack-and-the-end-of-ssl-3-0/
Also since Firefox 37.0 the TLS 1.0 has been viewed as obsolete.