Skip to content

Ensure the 'Minimum TLS version' for storage accounts is set to 'Version 1.2'

Why This Matters

TLS 1.0 is a legacy protocol with known security vulnerabilities that can expose your data in transit to attacks such as downgrade attacks or man-in-the-middle interception. If your storage accounts still permit TLS 1.0 connections, unauthorized parties may intercept or tamper with sensitive data moving between your applications and Azure Storage. Upgrading to TLS 1.2 eliminates these risks by enforcing a stronger, modern cryptographic protocol.

What Aether365 Checks

This check verifies that the minimum TLS version for each Azure storage account is set to 1.2. It appears in the Aether365 dashboard under the azure-storage-accounts compliance checks.

Microsoft references

Was this page helpful?