Netscaler XML Load Balancer > Cipher Issue

With the Default Cipher Group configuration in Netscaler you will receive “None of the SSL cipher suites offered were accepted by the server” error on Storefront and will not be able to enumerate the applications.

Solution :

  • On Netsaler Appliance, Traffic Management > SSL > Cipher Groups, create new Cipher Group with only TLS1.2-ECDHE-* in it.
  • On Netscaler Console (SSH) login and type set sslparameter -defaultProfile E
  • On Netscaler Appliance, System > Profiles > SSL Profile, edit ns_default_ssl_profile_frontend & ns_default_ssl_profile_backend, leave only TLSv12 Enabled and add SSL Cipher Group you recently created.

Did you find this article useful?