Okta plans to support Transport Layer Security (TLS) 1.3 in the future, but does not provide a specific timeline due to the extensive regression testing required by the implementation. Administrators often inquire about the availability of TLS 1.3 and the ability to customize TLS cipher suites within the Okta environment.
- Okta Identity Engine (OIE)
- Okta Classic Engine
- Transport Layer Security (TLS) 1.3
- Security
When does Okta plan to support TLS 1.3?
Okta plans to support TLS 1.3 over the coming years. However, due to the significant regression testing Okta requires to ensure there is no negative impact once enabled, Okta does not provide a specific timeline for moving exclusively to TLS 1.3.
NOTE: As a multi-tenant service, Okta does not currently offer the ability to customize the TLS cipher suite. Okta always prefers the strongest cipher for TLS that supports perfect forward secrecy, but Okta cannot exclude the use of other ciphers for compatibility purposes.
