What Changed

Updated ARM deployment template to enforce minimum TLS version 1.2 for Azure storage accounts used by the Trend Micro Vision One Function App connector.

Security Impact (Visibility & Fidelity)

Critical security hardening addressing TLS 1.0/1.1 vulnerability exposure:

  • Previous State: Storage accounts allowed TLS 1.0 connections, exposing data in transit to known cryptographic weaknesses and potential downgrade attacks
  • Current State: Enforces TLS 1.2 minimum, ensuring secure data transmission and compliance with modern security standards
  • Risk Mitigation: Eliminates exposure to TLS 1.0/1.1 protocol vulnerabilities including BEAST, CRIME, and POODLE attacks

Deployment Considerations

This change affects new deployments of the Trend Micro Vision One connector. Existing deployments may require manual storage account configuration update to enforce TLS 1.2. Organizations should audit existing storage accounts for consistent TLS policy enforcement across their Sentinel connector infrastructure.

Affected Files

Solutions/Trend Micro Vision One/Data Connectors/azuredeploy_TrendMicroVisionOne_API_FunctionApp.json