The National Stock Exchange (NSE) on March 01, 2024, issued a notification regarding the Implementation of TLS 1.2 (only with strong ciphers) and TLS 1.3 for the Capital Market (Equities) Trade, Debt Segment
The following has been stated namely: -
• It states that in order to enhance the security of data and communications, it has been decided to permit TLS 1.2 (only with strong ciphers) and TLS 1.3 protocols.
• It states that all members are requested to implement the following:
Upgrade the browsers to the latest versions.
oGoogle's Chrome - https://www.google.com/chrome/
oMozilla's Firefox - https://www.mozilla.org/en-US/firefox/new/
oMicrosoft's Edge — https://www.microsoft.com/en-in/edge/download?form=MA13FJ
•It states that the members connecting to the application using any other variant of clients (like for making API calls) are requested to check and make necessary changes at their end so that the client supports connections over TLS 1.2 (only with strong cipher) and/or TLS 1.3.
• All market participants are requested to note that the eOFS platform (live system) (Live URL: https://eofs.nseindia.com/) would only support communication over TLS 1.2 (only with a strong cipher) and/or TLS 1.3.
• In order to enable members to test the compatibility of systems/applications to support TLS 1.3, members may access the UAT system (UAT URL: https://www.eofsuat.com).
• It is to be noted that TLS 1.2 protocol may be discontinued in the future and the effective date for the same shall be communicated subsequently.
[Notification No. NSE/CMTR/60945]