github.com/khulnasoft-lab/defsec@v1.0.5-0.20230827010352-5e9f46893d95/avd_docs/azure/database/AVD-AZU-0026/Terraform.md (about)

     1  
     2  Use the most modern TLS policies available
     3  
     4  ```hcl
     5   resource "azurerm_mssql_server" "good_example" {
     6     name                         = "mssqlserver"
     7     resource_group_name          = azurerm_resource_group.example.name
     8     location                     = azurerm_resource_group.example.location
     9     version                      = "12.0"
    10     administrator_login          = "missadministrator"
    11     administrator_login_password = "thisIsKat11"
    12     minimum_tls_version          = "1.2"
    13   }
    14   
    15   resource "azurerm_postgresql_server" "good_example" {
    16     name                = "bad_example"
    17   
    18     public_network_access_enabled    = true
    19     ssl_enforcement_enabled          = false
    20     ssl_minimal_tls_version_enforced = "TLS1_2"
    21   }
    22   
    23  ```
    24  
    25  #### Remediation Links
    26   - https://registry.terraform.io/providers/hashicorp/azurerm/latest/docs/resources/mssql_server#minimum_tls_version
    27  
    28   - https://registry.terraform.io/providers/hashicorp/azurerm/latest/docs/resources/mysql_server#ssl_minimal_tls_version_enforced
    29  
    30   - https://registry.terraform.io/providers/hashicorp/azurerm/latest/docs/resources/postgresql_server#ssl_minimal_tls_version_enforced
    31