Duo will no longer support TLS v1.0 or 1.1

Refer to Duo’s official announcement, effective June 30, 2023, Duo will no longer support Transport Layer Security (TLS) versions 1.0 or 1.1 for any Duo product or service. Duo will also no longer support TLS connection requests negotiated by insecure cipher suites.‌

 

Action required: Configure endpoints to use supported TLS versions and stronger cipher suites.

# Duo Application TLS Support Supported and Required Versions
1 Duo Windows Applications
  • Supported Duo Windows integrations running on supported operating system (OS) versions will support TLS 1.2 by default. If you are running a supported Windows integration on a supported OS, no action is required.
  • Supported Windows versions: Windows 10, Windows 2012, Windows 2012 R2, Windows 2016 and Windows 2019.
  • Note that if your operating system was manually changed to disable TLS 1.2 for some reason, connection requests will fail. Please verify your system is properly configured for TLS 1.2.
2 Duo Authentication for Windows Logon
  • Windows Logon version 3.0.0.85 and newer supports TLS 1.2 on all Windows operating systems that support TLS 1.2.
  • Should also meet Supported and Required versions.
3 Duo Mobile
  • Supported Duo Mobile applications running on supported OS versions will support TLS 1.2+ by default. If you are running a supported Duo Mobile application on a supported OS, no action is required.
  • Supported Android versions: Android 10.0 and greater
  • Supported iOS versions: iOS 14.0 and greater
4 Linux
  • Linux authentication requires Duo Unix (pam_duo or login_duo) 1.10.4 or later and OpenSSL 1.0.1 or later to support TLS 1.2.

 

For more details, please refer to the following Duo articles:

 

 

Published on 15 Mar 2023