Hi, I tightened up the security configuration on our SA by setting it to accept only SSLv3 and TLSv1, and then using a custom cipher selection of just the AES/3DES and AES ciper suites - thinking that these setting were only relevant between the client out on the internet and the Juniper box. When I did this however the Juniper started throwing up connection errors when trying to access a couple of internal resources through HTTPS, so it looks like these encryption settings are enforced internally between the SA and the resources as well. Does anyone know if there's a way to have higher security setting betweent the client and Juniper, and lower settings on the inside between the Juniper and the resources? Cheers Stuart
... View more