github.com/aquasecurity/trivy-iac@v0.8.1-0.20240127024015-3d8e412cf0ab/avd_docs/azure/database/AVD-AZU-0026/Terraform.md (about)

     1  
     2  Use the most modern TLS policies available
     3  
     4  ```hcl
     5   resource "azurerm_mssql_server" "good_example" {
     6     name                         = "mssqlserver"
     7     resource_group_name          = azurerm_resource_group.example.name
     8     location                     = azurerm_resource_group.example.location
     9     version                      = "12.0"
    10     administrator_login          = "missadministrator"
    11     administrator_login_password = "thisIsKat11"
    12     minimum_tls_version          = "1.2"
    13   }
    14   
    15   resource "azurerm_postgresql_server" "good_example" {
    16     name                = "bad_example"
    17   
    18     public_network_access_enabled    = true
    19     ssl_enforcement_enabled          = false
    20     ssl_minimal_tls_version_enforced = "TLS1_2"
    21   }
    22   
    23  ```
    24  
    25  #### Remediation Links
    26   - https://registry.terraform.io/providers/hashicorp/azurerm/latest/docs/resources/mssql_server#minimum_tls_version
    27  
    28   - https://registry.terraform.io/providers/hashicorp/azurerm/latest/docs/resources/mysql_server#ssl_minimal_tls_version_enforced
    29  
    30   - https://registry.terraform.io/providers/hashicorp/azurerm/latest/docs/resources/postgresql_server#ssl_minimal_tls_version_enforced
    31