4.2 Set Security TLS Version Maximum

Information

This feature sets the maximum required protocol version.
Setting TLS 1.2 as the maximum authorized protocol version mitigates the risk of using an insecure connection.

Solution

Perform the following procedure:

* Open the mozilla.cfg file in the installation directory with a text editor

* Add the following lines to mozilla.cfg:

lockPref("security.tls.version.max", 3)

See Also

https://workbench.cisecurity.org/files/1158

Item Details

Category: SYSTEM AND COMMUNICATIONS PROTECTION

References: 800-53|SC-13

Plugin: Unix

Control ID: a79e695a175ee4ac441cadd69a7369d12a9d5d3342c2fa59f048105ca48c3c35