Wonder if AWS service support is available for TLS versions below 1.2

1

In some cases, customers of the services I create and provide use TLS 1.0/1.1.

https://aws.amazon.com/ko/blogs/security/tls-1-2-required-for-aws-endpoints/

Looking at the contents of the blog above, it seemed to control access below TLS 1.2 from June 28th EST, is this correct to apply? I think the service operates without much difference before and after the policy change time known above.

In order to test the case of using TLS 1.0/1.1, the test was conducted by connecting to Cloudfront after setting(https://repost.aws/knowledge-center/s3-access-old-tls) it up in S3. There was a 403 error that I did S3 setup, but the error is not occurring at this point when the policy is changed, so I wonder if it was actually applied.

Summary

  1. Has access blocking below TLS 1.2 been applied as announced on the blog?
  2. If access is blocked, does it work differently than setting it on S3?
2 Risposte
1
Risposta accettata

It's probably worth reading this other answer which also links to another relevant answer

The blog post you're referencing is about AWS deprecating support for TLS < v1.2 but that doesn't apply to customer-created endpoints.

profile pictureAWS
ESPERTO
con risposta 10 mesi fa
profile picture
ESPERTO
verificato 10 mesi fa
profile picture
ESPERTO
verificato 10 mesi fa
profile picture
ESPERTO
verificato 10 mesi fa
0

Hey Moby!

I don't know, how you are concluding it? But it clearly says they won't support TLS lower than 1.2 deprecation pathway

profile picture
con risposta 10 mesi fa
profile picture
ESPERTO
verificato 10 mesi fa

Accesso non effettuato. Accedi per postare una risposta.

Una buona risposta soddisfa chiaramente la domanda, fornisce un feedback costruttivo e incoraggia la crescita professionale del richiedente.

Linee guida per rispondere alle domande