Wonder if AWS service support is available for TLS versions below 1.2

1

In some cases, customers of the services I create and provide use TLS 1.0/1.1.

https://aws.amazon.com/ko/blogs/security/tls-1-2-required-for-aws-endpoints/

Looking at the contents of the blog above, it seemed to control access below TLS 1.2 from June 28th EST, is this correct to apply? I think the service operates without much difference before and after the policy change time known above.

In order to test the case of using TLS 1.0/1.1, the test was conducted by connecting to Cloudfront after setting(https://repost.aws/knowledge-center/s3-access-old-tls) it up in S3. There was a 403 error that I did S3 setup, but the error is not occurring at this point when the policy is changed, so I wonder if it was actually applied.

Summary

  1. Has access blocking below TLS 1.2 been applied as announced on the blog?
  2. If access is blocked, does it work differently than setting it on S3?
2 Antworten
1
Akzeptierte Antwort

It's probably worth reading this other answer which also links to another relevant answer

The blog post you're referencing is about AWS deprecating support for TLS < v1.2 but that doesn't apply to customer-created endpoints.

profile pictureAWS
EXPERTE
beantwortet vor 10 Monaten
profile picture
EXPERTE
überprüft vor 10 Monaten
profile picture
EXPERTE
überprüft vor 10 Monaten
profile picture
EXPERTE
überprüft vor 10 Monaten
0

Hey Moby!

I don't know, how you are concluding it? But it clearly says they won't support TLS lower than 1.2 deprecation pathway

profile picture
beantwortet vor 10 Monaten
profile picture
EXPERTE
überprüft vor 10 Monaten

Du bist nicht angemeldet. Anmelden um eine Antwort zu veröffentlichen.

Eine gute Antwort beantwortet die Frage klar, gibt konstruktives Feedback und fördert die berufliche Weiterentwicklung des Fragenstellers.

Richtlinien für die Beantwortung von Fragen