Partners can verify everything by connecting to their respective BioSig-ID™ sandbox environment.
BioSig-ID™ has been kept secure with TLS 1.2 for many years, but we rely on Forward-Secrecy to upgrade any initial connection from TLS 1.0/1.1 to the more secure 1.2 one. The BioSig-ID™ systems use the Microsoft TLS 1.0 and TLS 1.1 protocol implementations, which are still secure by a narrow margin, but there are active exploits being performed against other implementations that contain flaws.
To protect the world, TLS 1.0 and TLS 1.1 protocols will be removed from browsers next year. As there are no fixes or patches that can adequately fix SSL or deprecated TLS, it is critically important that organizations and end-users upgrade to a secure alternative as soon as possible.
Browser deadlines for disabling TLS 1.0 and TLS 1.1 protocol are as follows:
For this reason we can no longer allow TLS 1.0 and TLS 1.1 to remain active, especially when TLS 1.3 is soon to be released.
The impact will be on older systems that are no longer receiving updates.
Operating Systems in danger:
Please update your respective operating system to one with an active security maintenance window, and a modern "evergreen" browser that automatically updates to protect you against the latest exploits. Popular evergreen browsers are: Chrome, Edge, Firefox, Opera, and Safari.
Microsoft Internet Explorer 11 is temporarily given an extended lifeline by Microsoft due to massive corporate usage, but support for this will eventually end when TLS 1.3 is released.
For more information refer to the best practice section at
RFC-7525 which has advocated since 2015 why TLS 1.0 and 1.1 should no longer be used.