Applies ToWindows 10 Windows Server 2012 R2 Datacenter Windows Server 2012 R2 Standard Windows Server 2012 R2 Essentials Windows Server 2012 R2 Foundation Windows 8.1 Enterprise Windows 8.1 Pro Windows 8.1 Windows RT 8.1 Windows Server 2012 Datacenter Windows Server 2012 Datacenter Windows Server 2012 Standard Windows Server 2012 Standard Windows Server 2012 Essentials Windows Server 2012 Foundation Windows Server 2012 Foundation Windows 8 Enterprise Windows 8 Pro Windows 8 Windows RT Windows Server 2008 R2 Service Pack 1 Windows Server 2008 R2 Datacenter Windows Server 2008 R2 Enterprise Windows Server 2008 R2 Standard Windows Server 2008 R2 Web Edition Windows Server 2008 R2 Foundation Windows 7 Service Pack 1 Windows 7 Ultimate Windows 7 Enterprise Windows 7 Professional Windows 7 Home Premium Windows 7 Home Basic Windows 7 Starter Windows Server 2008 Service Pack 2 Windows Server 2008 Datacenter Windows Server 2008 Enterprise Windows Server 2008 Standard Windows Server 2008 Web Edition Windows Server 2008 Foundation Windows Server 2008 for Itanium-Based Systems Windows Vista Service Pack 2 Windows Vista Ultimate Windows Vista Enterprise Windows Vista Business Windows Vista Home Premium Windows Vista Home Basic Windows Vista Starter

Summary

This article summarizes the state of the Microsoft Schannel implementation of Transport Layer Security (TLS) 1.0 as it relates to all known vulnerabilities that have been reported to Microsoft as of the date of this article.  

More Information

The Microsoft Schannel implementation of TLS 1.0 in Windows is fully patched against all known vulnerabilities that have been reported to Microsoft. Customers' computers are protected against these vulnerabilities if all the following conditions are true:

  • The version of Windows that you are using is still in support for security updates as defined by the Microsoft Support Lifecycle.

  • Windows is fully patched, and all available security updates are installed.

  • The Windows default configuration of Schannel for TLS 1.0 is used.

However, TLS 1.0 is an aging protocol. Therefore, we highly recommend that customers have a plan to accelerate their migration toward products that support TLS 1.2 and to make sure that all applications are using TLS 1.2 by default. 

Need more help?

Want more options?

Explore subscription benefits, browse training courses, learn how to secure your device, and more.

Communities help you ask and answer questions, give feedback, and hear from experts with rich knowledge.