1.1.37 (L1) Ensure 'Maximum SSL version enabled' is set to 'Enabled: TLS 1.3'

Information

This setting sets the maximum required protocol version for the Transport Layer Security (TLS).

The recommended state for this setting is: Enabled:TLS 1.3

Setting TLS 1.3 as the maximum authorized protocol version mitigates the risk of using an insecure connection.

Solution

To establish the recommended configuration via GP, set the following UI path to Enabled:TLS 1.3 :

Computer Configuration\Policies\Administrative Templates\Mozilla\Firefox\Maximum SSL version enabled

Note: This Group Policy path does not exist by default. An additional Group Policy template ( firefox.admx/adml ) is required - it is available to download at this

link

.

See Also

https://workbench.cisecurity.org/benchmarks/18454

Item Details

Category: ACCESS CONTROL, IDENTIFICATION AND AUTHENTICATION, SYSTEM AND COMMUNICATIONS PROTECTION

References: 800-53|AC-17(2), 800-53|IA-5, 800-53|IA-5(1), 800-53|SC-8, 800-53|SC-8(1), CSCv7|14.4

Plugin: Windows

Control ID: 54e3547971aa09308d47a0e6eaf7f4dfd72fc29428a85165ac68f1bb92d806d3