Wonder if AWS service support is available for TLS versions below 1.2

1

In some cases, customers of the services I create and provide use TLS 1.0/1.1.

https://aws.amazon.com/ko/blogs/security/tls-1-2-required-for-aws-endpoints/

Looking at the contents of the blog above, it seemed to control access below TLS 1.2 from June 28th EST, is this correct to apply? I think the service operates without much difference before and after the policy change time known above.

In order to test the case of using TLS 1.0/1.1, the test was conducted by connecting to Cloudfront after setting(https://repost.aws/knowledge-center/s3-access-old-tls) it up in S3. There was a 403 error that I did S3 setup, but the error is not occurring at this point when the policy is changed, so I wonder if it was actually applied.

Summary

  1. Has access blocking below TLS 1.2 been applied as announced on the blog?
  2. If access is blocked, does it work differently than setting it on S3?
2개 답변
1
수락된 답변

It's probably worth reading this other answer which also links to another relevant answer

The blog post you're referencing is about AWS deprecating support for TLS < v1.2 but that doesn't apply to customer-created endpoints.

profile pictureAWS
전문가
답변함 10달 전
profile picture
전문가
검토됨 10달 전
profile picture
전문가
검토됨 10달 전
profile picture
전문가
검토됨 10달 전
0

Hey Moby!

I don't know, how you are concluding it? But it clearly says they won't support TLS lower than 1.2 deprecation pathway

profile picture
답변함 10달 전
profile picture
전문가
검토됨 10달 전

로그인하지 않았습니다. 로그인해야 답변을 게시할 수 있습니다.

좋은 답변은 질문에 명확하게 답하고 건설적인 피드백을 제공하며 질문자의 전문적인 성장을 장려합니다.

질문 답변하기에 대한 가이드라인

관련 콘텐츠