A government agency requires that the IIS server only accepts cipher suites approved by NIST. Beyond registry changes, what tool simplifies enforcing approved cipher suite ordering on Windows Server?
-
A
IIS Crypto (third-party GUI tool) or Group Policy's SSL Cipher Suite Order setting
-
B
IIS Manager SSL Settings dialog
-
C
Netsh http commands to set cipher suites
-
D
Windows Firewall Advanced Security inbound rules