Remediation

Legacy TLS versions still enabled

If a public endpoint still accepts TLS 1.0 or TLS 1.1, it is usually carrying compatibility debt that no longer benefits modern browsers. Most public web applications should keep TLS 1.2 and TLS 1.3 only.

What to change

Verify after change