AnsweredAssumed Answered

Poodle - possible to protocol downgrade if SSLv3 is disabled but still have SSLv3 ciphers enabled?

Question asked by user5309 on Oct 17, 2014
Latest reply on Oct 17, 2014 by user5309


My title pretty much sums it up. If I have:

 

A server with the SSLv3 protocol disabled BUT still have SSLv3 ciphers enabled.

 

Would that mean that a protocol downgrade attack can still occur?

Outcomes