Ticketbleed F5 bug undermines HTTPS
arstechnica.com
Ticketbleed F5 bug undermines HTTPS
1–7 of 7 posts
Re: Ticketbleed F5 bug undermines HTTPS
#2Re: Ticketbleed F5 bug undermines HTTPS
#3Thankfully this is limited to a single (and seemingly small) company's hardware, rather than the entire SSL/TLS stack. Glad it wasn't someone like Cisco too ...
Re: Ticketbleed F5 bug undermines HTTPS
#4Thankfully this is limited to a single (and seemingly small) company's hardware, rather than the entire SSL/TLS stack. Glad it wasn't someone like Cisco too ...
Re: Ticketbleed F5 bug undermines HTTPS
#5Thankfully this is limited to a single (and seemingly small) company's hardware, rather than the entire SSL/TLS stack. Glad it wasn't someone like Cisco too ...
Re: Ticketbleed F5 bug undermines HTTPS
#6Thankfully this is limited to a single (and seemingly small) company's hardware, rather than the entire SSL/TLS stack. Glad it wasn't someone like Cisco too ...
We had session tickets disabled already so weren't affected, but you'd be surprised some of the sites that use these devices. I believe AT&T has quite a number in use.
Re: Ticketbleed F5 bug undermines HTTPS
#7Earlier quoted context omitted.
We had session tickets disabled already so weren't affected, but you'd be surprised some of the sites that use these devices. I believe AT&T has quite a number in use.
At one time Azure was built on a whole bunch of F5s. Unsure if they are still in the picture.