SSLv3 should have been disabled ages ago. We have had it disabled since POODLE on some very large sites and haven't had any complaints about IE6 being broken.
We still have TLS 1.0/1.1 enabled on nearly everything, but restrict cipher suites and prohibit ones that are known to be insecure. Josh On Wed, Apr 20, 2016 at 10:30 PM, Eric Kuhnke <[email protected]> wrote: > If you've disabled SSLv3, TLS1.0 and TLS1.1, permitting only TLS1.2 https, > webmail or imap/pop3 server access for your customers, has anyone noticed > or complained? > > Anybody using a web browser shipped in 2010 or later should be fine... > > >
