Cloudflare
Security & compliance
Performance
Releases
TLS 1.3 not enabled
Part of the Edge TLS posture check · fix arrives as a guide
What it is
TLS 1.3 is not enabled on the zone.
Why it matters
You are leaving performance and security on the table. TLS 1.3 completes its handshake in one round trip instead of two and removes the legacy cipher suites that older versions still negotiate.
How to fix it
Enable TLS 1.3 in the SSL/TLS settings. It is backwards compatible — clients that do not support it negotiate 1.2 as before — so there is no client-support tradeoff.
Run them all on your app
Connect your repo and your live services with read-only scopes. The first scan is free, and nothing changes without your approval.