Preparing for TLS 1.3: Security & compliance update
Aurion will support TLS 1.3 exclusively from 1 December 2026. Learn what the change means, why it's happening, and how to prepare.
As cyber security threats continue to evolve, maintaining secure, resilient systems is more important than ever. As part of our ongoing commitment to protecting customer data and aligning with industry best practice, Aurion will support Transport Layer Security (TLS) 1.3 exclusively from 1 December 2026. This change will help ensure continued alignment with modern security standards and industry best practice.
If your organisation connects to the Aurion Cloud Platform, now is the time to work with your IT team to ensure you’re ready for this transition.
Key date: From 1 December 2026, all connections to Aurion Cloud Platform endpoints must use TLS 1.3. TLS 1.2 will no longer be supported.
What is TLS 1.3?
TLS (Transport Layer Security) is the protocol used to secure communications across the internet. It helps protect data in transit between systems, applications, and websites by encrypting information and verifying the identity of connected services.
TLS 1.3 is the latest version of the protocol and provides significant security and performance improvements over earlier versions.
Why are we making this change?
This transition aligns with the Australian Government Information Security Manual (ISM) protected classification security controls and reflects a broader move across government and industry towards TLS 1.3. The Australian Taxation Office (ATO) have already adopted TLS 1.3 requirements for digital service providers, recognising the benefits of stronger encryption and modern security protocols.
By moving from TLS 1.2 to TLS 1.3, organisations can benefit from:
- Enhanced security
- Improved performance
- Forward secrecy
- Simplified protocol
Enhanced security
TLS 1.3 removes outdated cryptographic algorithms and strengthens encryption standards, helping organisations better protect against modern cyber threats.
Improved performance
The protocol features a streamlined handshake process, enabling faster and more efficient establishment of secure connections between systems.
Forward secrecy
TLS 1.3 supports forward secrecy, ensuring that even if long-term encryption keys are compromised in the future, previously encrypted sessions remain secure.
Simplified protocol
TLS 1.3 simplifies secure communications by removing outdated features and reducing protocol complexity, making connections more secure, efficient, and easier to maintain.
What does this mean for your organisation?
From 1 December 2026, connections to Aurion Cloud Platform endpoints will need to use TLS 1.3. Systems or devices attempting to connect using TLS 1.2 or earlier versions may no longer be able to establish a connection.
While many modern systems already support TLS 1.3, some legacy infrastructure, applications, integration services, or network devices may still rely on older protocols.
How to prepare
- To ensure a smooth transition, we recommend engaging your IT team as soon as possible to:
- Audit systems, applications, and devices that connect to Aurion Cloud Platform endpoints.
- Verify that all connections are using, or can be configured to use, TLS 1.3.
- Identify and remediate any systems that rely on TLS 1.2 or earlier versions.
- Test connectivity and compatibility ahead of the December 2026 deadline.
- Starting early will help minimise disruption and provide ample time to address any compatibility requirements.
We’re here to help
Aurion is committed to supporting customers throughout the transition and will proactively engage with organisations that may be affected by the move to TLS 1.3.
Over the coming months, our team will work closely with affected customers to support the move to TLS 1.3 and help ensure a seamless transition ahead of the 1 December 2026 deadline.
Existing customers can also visit our dedicated TLS 1.3 information page (login required) for additional information, guidance, and updates throughout the transition.