Nino_Bilic I hope we do not need to Disable\enable specific cipher suites for TLS as I see below Cipher suites from HC.
TlsCipherSuiteName CipherSuite Cipher Certificate Protocols
------------------ ----------- ------ ----------- ---------
TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384 49200 AES RSA TLS_1_2 & DTLS_1_1
TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256 49199 AES RSA TLS_1_2 & DTLS_1_1
TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA384 49192 AES RSA TLS_1_2 & DTLS_1_1
TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA256 49191 AES RSA TLS_1_2 & DTLS_1_1
TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA 49172 AES RSA TLS_1_0 & TLS_1_1 & TLS_1_2 &
DTLS_1_0 & DTLS_1_1
TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA 49171 AES RSA TLS_1_0 & TLS_1_1 & TLS_1_2 &
DTLS_1_0 & DTLS_1_1
TLS_ECDHE_ECDSA_WITH_AES_256_GCM_SHA3 0 N/A N/A
84
TLS_ECDHE_ECDSA_WITH_AES_128_GCM_SHA2 49195 AES ECDSA TLS_1_2 & DTLS_1_1
56
TLS_ECDHE_ECDSA_WITH_AES_256_CBC_SHA3 49188 AES ECDSA TLS_1_2 & DTLS_1_1
84
TLS_ECDHE_ECDSA_WITH_AES_128_CBC_SHA2 49187 AES ECDSA TLS_1_2 & DTLS_1_1
56
TLS_ECDHE_ECDSA_WITH_AES_256_CBC_SHA 49162 AES ECDSA TLS_1_0 & TLS_1_1 & TLS_1_2 &
DTLS_1_0 & DTLS_1_1
TLS_ECDHE_ECDSA_WITH_AES_128_CBC_SHA 49161 AES ECDSA TLS_1_0 & TLS_1_1 & TLS_1_2 &
DTLS_1_0 & DTLS_1_1
TLS_RSA_WITH_AES_256_GCM_SHA384 157 AES RSA TLS_1_2 & DTLS_1_1
TLS_RSA_WITH_AES_128_GCM_SHA256 156 AES RSA TLS_1_2 & DTLS_1_1
TLS_RSA_WITH_AES_256_CBC_SHA256 61 AES RSA TLS_1_2 & DTLS_1_1
TLS_RSA_WITH_AES_128_CBC_SHA256 60 AES RSA TLS_1_2 & DTLS_1_1
TLS_RSA_WITH_AES_256_CBC_SHA 53 AES RSA TLS_1_0 & TLS_1_1 & TLS_1_2 &
DTLS_1_0 & DTLS_1_1
TLS_RSA_WITH_AES_128_CBC_SHA 47 AES RSA TLS_1_0 & TLS_1_1 & TLS_1_2 &
DTLS_1_0 & DTLS_1_1
TLS_RSA_WITH_3DES_EDE_CBC_SHA 10 3DES RSA TLS_1_0 & TLS_1_1 & TLS_1_2 &
SSL_3_0 & DTLS_1_0 & DTLS_1_1