How to Require TLS 1.3 and Not Allow 1.2

Overview

This article clarifies whether it is possible to limit connections to Auth0 login to only TLS 1.3.

Solution

At the moment, configuring custom edge cipher suites for individual tenants within the Public Cloud product is not supported. However, If complete control over the ciphers that are used by the tenant is desired, then the best option would be to migrate to Custom Domain + self-managed certificates. More details about how to configure Custom Domains with Self-Managed Certificates can be found here.

Also, please see the supported ciphers for TLS 1.3 below: