Control: Latest TLS version should be used in your Function App
Description
App service currently allows the function app to set TLS versions 1.0, 1.1 and 1.2. It is highly recommended to use the latest TLS 1.2 version for function app secure connections.
Usage
Run the control in your terminal:
powerpipe control run terraform_azure_compliance.control.appservice_function_app_latest_tls_versionSnapshot and share results via Turbot Pipes:
powerpipe loginpowerpipe control run terraform_azure_compliance.control.appservice_function_app_latest_tls_version --shareSQL
This control uses a named query:
select  address as resource,  case    when (attributes_std -> 'site_config') is null then 'alarm'    when (attributes_std -> 'site_config' ->> 'min_tls_version')::float < 1.2 then 'alarm'    else 'ok'  end status,  split_part(address, '.', 2) || case    when (attributes_std -> 'site_config') is null then ' ''min_tls_version'' not defined'    when (attributes_std -> 'site_config' ->> 'min_tls_version')::float < 1.2 then ' not using the latest version of TLS encryption'    else ' using the latest version of TLS encryption'  end || '.' reason    , path || ':' || start_linefrom  terraform_resourcewhere  type = 'azurerm_function_app';