1. Client Hello | TLS 1.2 |
2. Server Hello | When GlobalProtect uses an ECDSA
certificate and TLS 1.2 is accepted, the SSL session uses ECDSA-AES256-CBC-SHA. When GlobalProtect uses an RSA certificate and TLS 1.2 is accepted,
the SSL session uses RSA-AES256-CBC-SHA256.
|
3. Optional Client Certificate | Client certificates signed with ECDSA or
RSA and using SHA1, SHA256, or SHA384 |
4. SSL Session | |