Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Create firewall rule to block TLS1.0

Hi Group,

I have an unusual SOC audit request.  The request is to "Encryption of Data in Transit: Provide screenshot of firewall setting that shows TLS 1.0 or lower encryption protocols are prevented."

 

If I read this correctly, they are asking for the firewall to filter any traffic that is requesting TLS1.0 and lower from passing through.  Any thoughts on how this could be accomplished?



This thread was automatically locked due to age.
Parents
  • I would assume, this can only be archived on a Stream based. Sophos XG V18 can do such a blocking. 

    UTM can only prevent to communicate with UTM TLS1.0. So you cannot talk to the Proxy with TLS1.0.

    But it cannot prevent the user to open a Port to a server with TLS1.0. 

Reply
  • I would assume, this can only be archived on a Stream based. Sophos XG V18 can do such a blocking. 

    UTM can only prevent to communicate with UTM TLS1.0. So you cannot talk to the Proxy with TLS1.0.

    But it cannot prevent the user to open a Port to a server with TLS1.0. 

Children