Skip to main content

OSS Bucket TLS Version Check

ID: rule:aliyun:oss-bucket-tls-version-check
Severity: medium

Description

Ensures that the OSS bucket is configured to use a secure version of TLS (TLS 1.2 or higher).

Reason for Violation

Older versions of TLS have security vulnerabilities. Using newer versions ensures data transport security.

Recommendation

Configure the OSS bucket to require TLS 1.2 or higher for all requests.

Resource Types

  • ALIYUN::OSS::Bucket