<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Enabling TLS 1.3 for All Gateway Interfaces in General Topics</title>
    <link>https://community.checkpoint.com/t5/General-Topics/Enabling-TLS-1-3-for-All-Gateway-Interfaces/m-p/281948#M46863</link>
    <description>&lt;P&gt;&lt;A href="https://support.checkpoint.com/results/sk/sk178505" target="_blank" rel="noopener"&gt;Per sk178505&lt;/A&gt;, it doesn't mention TLS 1.3 for R82.10&amp;nbsp; &amp;nbsp; Also, it looks like TLS 1.2 is the max (not TLSv1.3) for remote access (mobile).&amp;nbsp; see&amp;nbsp;&lt;SPAN&gt;Remote Access VPN - SNX in Network Mode / Slim Client section in sk178505.&amp;nbsp; Any one have an ETA or know if it's being looked at for Mobile Access?&amp;nbsp; Qualys scans give us an A- now.&amp;nbsp; &lt;span class="lia-unicode-emoji" title=":disappointed_face:"&gt;😞&lt;/span&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;cipher_util just shows and option for TLS 1.2, even after turning 1.3 on. set ssl tls TLSv1.3 on save config&lt;/P&gt;</description>
    <pubDate>Mon, 14 Sep 2026 16:06:49 GMT</pubDate>
    <dc:creator>Daniel_Kavan</dc:creator>
    <dc:date>2026-09-14T16:06:49Z</dc:date>
    <item>
      <title>Enabling TLS 1.3 for All Gateway Interfaces</title>
      <link>https://community.checkpoint.com/t5/General-Topics/Enabling-TLS-1-3-for-All-Gateway-Interfaces/m-p/207366#M34400</link>
      <description>&lt;P&gt;We are trying to ensure that TLS 1.3 is enabled on our Checkpoint Gateways and have successfully configured the primary interface of the Gateways to have TLS 1.3 enabled (as well as disable TLS 1.0 &amp;amp; TLS 1.1) by using the following clish commands:&lt;/P&gt;&lt;PRE&gt;show ssl tls enabled&lt;BR /&gt;set ssl tls TLSv1.0 off&amp;nbsp; # repeat as needed with other TLS versions&lt;BR /&gt;set ssl tls TLSv1.3 on&lt;BR /&gt;save config&lt;/PRE&gt;&lt;P&gt;This seems to have only applied to the primary interface of the Gateway. Is there a way that we can also ensure that TLS 1.3 is enabled for the secondary interface of the Gateway? Specifically we're looking to enable TLS 1.3 for port 443.&lt;/P&gt;&lt;P&gt;Thanks!&lt;/P&gt;</description>
      <pubDate>Wed, 28 Feb 2024 14:43:16 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/Enabling-TLS-1-3-for-All-Gateway-Interfaces/m-p/207366#M34400</guid>
      <dc:creator>bhill3</dc:creator>
      <dc:date>2024-02-28T14:43:16Z</dc:date>
    </item>
    <item>
      <title>Re: Enabling TLS 1.3 for All Gateway Interfaces</title>
      <link>https://community.checkpoint.com/t5/General-Topics/Enabling-TLS-1-3-for-All-Gateway-Interfaces/m-p/207426#M34410</link>
      <description>&lt;P&gt;&lt;A href="https://support.checkpoint.com/results/sk/sk178505" target="_blank"&gt;https://support.checkpoint.com/results/sk/sk178505&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 28 Feb 2024 21:31:53 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/Enabling-TLS-1-3-for-All-Gateway-Interfaces/m-p/207426#M34410</guid>
      <dc:creator>Lesley</dc:creator>
      <dc:date>2024-02-28T21:31:53Z</dc:date>
    </item>
    <item>
      <title>Re: Enabling TLS 1.3 for All Gateway Interfaces</title>
      <link>https://community.checkpoint.com/t5/General-Topics/Enabling-TLS-1-3-for-All-Gateway-Interfaces/m-p/207432#M34412</link>
      <description>&lt;P&gt;From expert mode -&amp;gt; cipher_util, option 2, then 2 again, follow the prompts.&lt;/P&gt;
&lt;P&gt;Best,&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
      <pubDate>Thu, 29 Feb 2024 01:05:43 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/Enabling-TLS-1-3-for-All-Gateway-Interfaces/m-p/207432#M34412</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2024-02-29T01:05:43Z</dc:date>
    </item>
    <item>
      <title>Re: Enabling TLS 1.3 for All Gateway Interfaces</title>
      <link>https://community.checkpoint.com/t5/General-Topics/Enabling-TLS-1-3-for-All-Gateway-Interfaces/m-p/281948#M46863</link>
      <description>&lt;P&gt;&lt;A href="https://support.checkpoint.com/results/sk/sk178505" target="_blank" rel="noopener"&gt;Per sk178505&lt;/A&gt;, it doesn't mention TLS 1.3 for R82.10&amp;nbsp; &amp;nbsp; Also, it looks like TLS 1.2 is the max (not TLSv1.3) for remote access (mobile).&amp;nbsp; see&amp;nbsp;&lt;SPAN&gt;Remote Access VPN - SNX in Network Mode / Slim Client section in sk178505.&amp;nbsp; Any one have an ETA or know if it's being looked at for Mobile Access?&amp;nbsp; Qualys scans give us an A- now.&amp;nbsp; &lt;span class="lia-unicode-emoji" title=":disappointed_face:"&gt;😞&lt;/span&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;cipher_util just shows and option for TLS 1.2, even after turning 1.3 on. set ssl tls TLSv1.3 on save config&lt;/P&gt;</description>
      <pubDate>Mon, 14 Sep 2026 16:06:49 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/Enabling-TLS-1-3-for-All-Gateway-Interfaces/m-p/281948#M46863</guid>
      <dc:creator>Daniel_Kavan</dc:creator>
      <dc:date>2026-09-14T16:06:49Z</dc:date>
    </item>
  </channel>
</rss>

