FAQ on App Service cipher suites
Published Jul 25 2023 07:19 PM 4,740 Views
Microsoft

Q1: What are cipher suites and how do they work on App Service?

 

Q2: How to confirm the supported cipher suites on App Service server side?

 

Q3: Why does App Service support some weak cipher suites?

  • For the purpose of backward compatibility when someone is using a legacy browser, which usually requires weak cipher suites to establish an SSL connection. Otherwise, the client will meet SSL errors.

 

Q4: What has Azure App Service done to make it as secure as possible?

  • Azure Web App places the strongest and most secure cipher suites in the front of our cipher order.
  • The cipher suite order is in line with guidance from Azure Security.

 

Q5: How to disable some of the weak cipher suites?

1 Comment
Co-Authors
Version history
Last update:
‎Jul 25 2023 07:19 PM
Updated by: