Sekit CSF · Network Security · Technical
RCF-0183TLS termination/hardening
Technical controls enforce TLS version and cipher standards across all services and flag non-compliant endpoints
Mapping at a glance
RCF-0183TLS termination/hardeningNetwork Security · Technical
RCF-0183 maps to 4 controls across the published frameworks. Open in the full graph →
Maps to ISO/IEC 27001:2022
Curated mapping with the reasoning, not just the codes.
A.8.20Networks securitysupportsRequiring TLS 1.2 or later with modern ciphers on every service enforces the encrypted-transit expectation that is part of A.8.20's network protection.A.8.24Use of cryptographysupportsThe technical facet configures every service to accept only TLS 1.2 or later with modern ciphers and reject legacy protocol fallback.
Maps to NIST CSF 2.0
Curated mapping with the reasoning, not just the codes.
Evidence that proves this control
What an auditor, or Sekit's evidence engine, asks for.
TLS and secure-DNS review
The proof that the company's websites and services use strong encryption (up-to-date HTTPS/TLS) and that DNS is protected against tampering.
From the Sekit evidence catalog
This topic through the other lenses
All Network Security controls
Ask Sekura: “What evidence proves RCF-0183?”
Also via MCP, free with account