last sync: 2023-Jun-09 17:46:13 UTC

Azure Policy definition

App Service Environment should have TLS 1.0 and 1.1 disabled

Name App Service Environment should have TLS 1.0 and 1.1 disabled
Azure Portal
Id d6545c6b-dd9d-4265-91e6-0b451e2f1c50
Version 2.0.1
details on versioning
Category App Service
Microsoft docs
Description TLS 1.0 and 1.1 are out-of-date protocols that do not support modern cryptographic algorithms. Disabling inbound TLS 1.0 and 1.1 traffic helps secure apps in an App Service Environment.
Mode Indexed
Type BuiltIn
Preview FALSE
Deprecated FALSE
Effect Default
Audit
Allowed
Audit, Deny, Disabled
RBAC
Role(s)
none
Rule
Aliases
IF (3)
Alias Namespace ResourceType DefaultPath Modifiable
Microsoft.Web/HostingEnvironments/clusterSettings[*] Microsoft.Web hostingEnvironments properties.clusterSettings[*] true
Microsoft.Web/HostingEnvironments/clusterSettings[*].name Microsoft.Web hostingEnvironments properties.clusterSettings[*].name false
Microsoft.Web/HostingEnvironments/clusterSettings[*].value Microsoft.Web hostingEnvironments properties.clusterSettings[*].value false
Rule
ResourceTypes
IF (1)
Microsoft.Web/hostingEnvironments
Compliance The following 1 compliance controls are associated with this Policy definition 'App Service Environment should have TLS 1.0 and 1.1 disabled' (d6545c6b-dd9d-4265-91e6-0b451e2f1c50)
Control Domain Control Name MetadataId Category Title Owner Requirements Description Info Policy#
ACAT_Security_Policies ACAT_Security_Policies ACAT Security Policies Guidelines for M365 Certification Protecting systems and resources Shared n/a Ensures that apps have strong security and compliance practices in place to protect customer data, security, and privacy. link 24
History
Date/Time (UTC ymd) (i) Change type Change detail
2022-07-01 16:32:34 change Patch (2.0.0 > 2.0.1) *changes on text case sensitivity are not tracked
2021-05-04 14:34:06 change Major (1.0.0 > 2.0.0)
2021-04-27 15:38:15 add d6545c6b-dd9d-4265-91e6-0b451e2f1c50
Initiatives
usage
Initiative DisplayName Initiative Id Initiative Category State Type
ACAT for Microsoft 365 Certification 80307b86-ab81-45ab-bf4f-4e0b93cf3dd5 Regulatory Compliance GA BuiltIn
JSON