Certain security protocols and cipher suites are provided by default in View 5.2 and later releases. By default, the global acceptance and proposal policies are very similar.

Default Global Policies

Default Security Protocols

Default Cipher Suites

TLS 1.1

TLS 1.0

SSLv2Hello (acceptance policy only)

TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA

TLS_DHE_DSS_WITH_AES_128_CBC_SHA

TLS_DHE_RSA_WITH_AES_128_CBC_SHA

TLS_RSA_WITH_AES_128_CBC_SHA

SSL_RSA_WITH_RC4_128_SHA

You can change the default policies in the following ways:

If all connecting clients support TLS 1.1, you can remove TLS 1.0 and SSLv2Hello from the acceptance policy.

You can add TLS 1.2 to the acceptance and proposal policies, which will then be selected if the other end of the connection supports TLS 1.2.

If all connecting clients support AES cipher suites, you can remove SSL_RSA_WITH_RC4_128_SHA from the acceptance policy.