Vulnerability Bulletins

TLS fallback protection is available in IBM DataPower appliances

   
Affected software IBM
 
TLS Fallback signaling cipher suite value for preventing protocol downgrade attacks (TLS_FALLBACK_SCSV) is an update to the TLS protocol, currently in an IETF draft document. This has been incorporated into IBM DataPower appliances. Content DataPower has added support for TLS_FALLBACK_SCSV to allow applications to block the ability for a MITM attacker to force a protocol downgrade. Some client applications (such as browsers) will reconnect using a downgraded protocol to work around

More info:

https://www-304.ibm.com/connections/blogs/PSIRT/entry/tls_fallback_protection_is_available_in_ibm_datapower_appliances?lang=en_us