github.com/khulnasoft-lab/defsec@v1.0.5-0.20230827010352-5e9f46893d95/avd_docs/azure/database/AVD-AZU-0026/Terraform.md (about) 1 2 Use the most modern TLS policies available 3 4 ```hcl 5 resource "azurerm_mssql_server" "good_example" { 6 name = "mssqlserver" 7 resource_group_name = azurerm_resource_group.example.name 8 location = azurerm_resource_group.example.location 9 version = "12.0" 10 administrator_login = "missadministrator" 11 administrator_login_password = "thisIsKat11" 12 minimum_tls_version = "1.2" 13 } 14 15 resource "azurerm_postgresql_server" "good_example" { 16 name = "bad_example" 17 18 public_network_access_enabled = true 19 ssl_enforcement_enabled = false 20 ssl_minimal_tls_version_enforced = "TLS1_2" 21 } 22 23 ``` 24 25 #### Remediation Links 26 - https://registry.terraform.io/providers/hashicorp/azurerm/latest/docs/resources/mssql_server#minimum_tls_version 27 28 - https://registry.terraform.io/providers/hashicorp/azurerm/latest/docs/resources/mysql_server#ssl_minimal_tls_version_enforced 29 30 - https://registry.terraform.io/providers/hashicorp/azurerm/latest/docs/resources/postgresql_server#ssl_minimal_tls_version_enforced 31