- 필수 기능
- 시작하기
- Glossary
- 표준 속성
- Guides
- Agent
- 통합
- 개방형텔레메트리
- 개발자
- API
- Datadog Mobile App
- CoScreen
- Cloudcraft
- 앱 내
- 서비스 관리
- 인프라스트럭처
- 애플리케이션 성능
- APM
- Continuous Profiler
- 스팬 시각화
- 데이터 스트림 모니터링
- 데이터 작업 모니터링
- 디지털 경험
- 소프트웨어 제공
- 보안
- AI Observability
- 로그 관리
- 관리
Verify that AWS CloudFront distributions have a security policy of TLS v1.1 or greater.
TLS v1.1, the minimum protocol recommended for AWS CloudFront, and the cipher used to encrypt this content, improve application security.
Follow the Values That You Specify When You Create or Update a Distribution docs to update your CloudFront distribution’s Minimum Origin SSL Protocol to TLS v1.1 or greater.
Run get-distribution-config
with your AWS CloudFront distribution ID to retrieve your distribution’s configuration information.
get-distribution-config.sh
aws cloudfront get-distribution-config
--id ID000000000000
In a new JSON file, modify the returned configuration by setting the minimum protocol version to TLC v1.1 (2016) or v1.2 (2018).
tls-version.sh
{
"ETag": "ETAG0000000000",
"DistributionConfig": {
...
"ViewerCertificate": {
...
"MinimumProtocolVersion": "TLSv1.1_2016",
},
...
}
}
Run update-distribution
to update your distribution with your distribution id
, the path of the configuration file (created in step 2), and your etag
.
update-distribution.sh
aws cloudfront update-distribution
--id ID000000000000
--distribution-config tls-version.json
--if-match ETAG0000000000