πΌ [CloudFront.8] CloudFront distributions should use SNI to serve HTTPS requests
- Contextual name: πΌ [CloudFront.8] CloudFront distributions should use SNI to serve HTTPS requests
- ID:
/frameworks/aws-fsbp-v1.0.0/cloudfront/08
- Located in: πΌ CloudFront
Descriptionβ
Server Name Indication (SNI) is an extension to the TLS protocol that is supported by browsers and clients released after 2010. If you configure CloudFront to serve HTTPS requests using SNI, CloudFront associates your alternate domain name with an IP address for each edge location. When a viewer submits an HTTPS request for your content, DNS routes the request to the IP address for the correct edge location. The IP address to your domain name is determined during the SSL/TLS handshake negotiation; the IP address isn't dedicated to your distribution.
Similarβ
- AWS Security Hub
- Internal
- ID:
dec-c-03f1cc5f
- ID:
Similar Sections (Give Policies To)β
Sub Sectionsβ
Section | Sub Sections | Internal Rules | Policies | Flags |
---|