ASVS Requirement 12.3.4
- Level: 2
- Chapter: V12 Secure Communication
- Section: V12.3 General Service to Service Communication Security
- Source: 0x21-V12-Secure-Communication.md
Description
Verify that TLS connections between internal services use trusted certificates. Where internally generated or self-signed certificates are used, the consuming service must be configured to only trust specific internal CAs and specific self-signed certificates.