Wonder if AWS service support is available for TLS versions below 1.2

1

In some cases, customers of the services I create and provide use TLS 1.0/1.1.

https://aws.amazon.com/ko/blogs/security/tls-1-2-required-for-aws-endpoints/

Looking at the contents of the blog above, it seemed to control access below TLS 1.2 from June 28th EST, is this correct to apply? I think the service operates without much difference before and after the policy change time known above.

In order to test the case of using TLS 1.0/1.1, the test was conducted by connecting to Cloudfront after setting(https://repost.aws/knowledge-center/s3-access-old-tls) it up in S3. There was a 403 error that I did S3 setup, but the error is not occurring at this point when the policy is changed, so I wonder if it was actually applied.

Summary

  1. Has access blocking below TLS 1.2 been applied as announced on the blog?
  2. If access is blocked, does it work differently than setting it on S3?
2 Answers
1
Accepted Answer

It's probably worth reading this other answer which also links to another relevant answer

The blog post you're referencing is about AWS deprecating support for TLS < v1.2 but that doesn't apply to customer-created endpoints.

profile pictureAWS
EXPERT
answered 10 months ago
profile picture
EXPERT
reviewed 10 months ago
profile picture
EXPERT
reviewed 10 months ago
profile picture
EXPERT
reviewed 10 months ago
0

Hey Moby!

I don't know, how you are concluding it? But it clearly says they won't support TLS lower than 1.2 deprecation pathway

profile picture
answered 10 months ago
profile picture
EXPERT
reviewed 10 months ago

You are not logged in. Log in to post an answer.

A good answer clearly answers the question and provides constructive feedback and encourages professional growth in the question asker.

Guidelines for Answering Questions