My Oracle Support Banner

Unable to enable TLS 1.2 in OKE kubernetes deployment with custom TLS And ciphers for nginx ingress loadbalancer controller (Doc ID 2518551.1)

Last updated on OCTOBER 03, 2019

Applies to:

Oracle Cloud Infrastructure - Version N/A and later
Information in this document applies to any platform.

Symptoms

Attempt to test OKE deployment of Kubernetes and configure an NGINX ingress controller using a self-signed certificate to only use TLS 1.2 and disable the older versions (TLS 1.0, 1.1).

The setting is in the config map, but after setting Firefox to only use TLS 1.0, the website ingress still allows the downgrade to TLS 1.0, which is unexpected.

Cause

To view full details, sign in with your My Oracle Support account.

Don't have a My Oracle Support account? Click to get started!


In this Document
Symptoms
Cause
Solution
References


My Oracle Support provides customers with access to over a million knowledge articles and a vibrant support community of peers and Oracle experts.