Transport Layer Security (TLS) protocol Version 1.3
Use the latest TLS security protocol to protect your site. This prevents attackers from exploiting weaknesses in older, less secure versions to steal sensitive data.
About this task
Note: If you are using HCL Commerce
V9.1.5 to 9.1.18, see Transport Layer Security (TLS) protocol Version 1.2.Transport Layer Security (TLS) is a cryptographic protocol designed for secure network communications. TLSv1.3 is the latest, and thus most secure, version of the specification.
Requiring TLSv1.3 is part of updating to NIST SP 800-131A security standards. Consider NIST SP 800-131A for more enhancements to site security.
Procedure
To enforce the use of TLSv1.3 on your site, ensure that all supporting software
is using TLSv1.3:
- It is recommended that you use SSL_TLSv2 so that you can support TLS
1.2, and 1.3 for outbound communication. If you want to restrict
outbound communication to TLS 1.2 and TLS 1.3 only, use
TLSv1.2. - Use the Transaction server Run Engine commands to set the SSL protocol for SSL configuration.