I think the policy to audit to control the TLS setting is still not available yet. If you tried you will get the error like
autorest/azure: Service returned an error. Status=400 Code="InvalidPolicyAlias" Message="The policy definition 'gartner-governance-pd-0112' rule is invalid. The 'field' property 'Microsoft.ServiceBus/namespaces/minimumTlsVersion' of the policy rule doesn't exist as an alias under provider 'Microsoft.ServiceBus' and resource type 'namespaces'. The supported aliases are 'Microsoft.ServiceBus/namespaces/sku.name; Microsoft.ServiceBus/namespaces/sku.tier; Microsoft.ServiceBus/namespaces/sku.capacity; Microsoft.ServiceBus/namespaces/sku; Microsoft.ServiceBus/namespaces/provisioningState; Microsoft.ServiceBus/namespaces/createdAt; Microsoft.ServiceBus/namespaces/updatedAt; Microsoft.ServiceBus/namespaces/serviceBusEndpoint; Microsoft.ServiceBus/namespaces/metricId; Microsoft.ServiceBus/namespaces/zoneRedundant; Microsoft.ServiceBus/namespaces/status; Microsoft.ServiceBus/namespaces/createACSNamespace; Microsoft.ServiceBus/namespaces/enabled; Microsoft.ServiceBus/namespaces/identity.principalId; Microsoft.ServiceBus/namespaces/identity.tenantId; Microsoft.ServiceBus/namespaces/identity.type; Microsoft.ServiceBus/namespaces/identity;
I got the confirmation from the microsoft support that this not supported yet. Hence they are going to update the documentation properly. So probabily we will wait until we get the official support from azure policy.