Amazon API Gateway now supports additional TLS security policies for REST APIs
News
This article announces enhanced TLS security policies for Amazon API Gateway REST APIs and custom domain names.
- New TLS security policies including TLS 1.3-only, Perfect Forward Secrecy, FIPS compliance options
- Post Quantum Cryptography support for future-proofing API security
- Endpoint access control for additional governance capabilities
- Available at no additional cost across all API endpoint and custom domain types
- Supported in 30+ AWS regions globally including US, Europe, Asia Pacific, and Middle East
API Gateway now offers granular TLS security controls to help customers meet regulatory requirements and strengthen API encryption without additional charges.
The AWS News Feed is currently looking for gold sponsors. If you want to support the AWS community and reach a large audience of AWS professionals, consider sponsoring the AWS News Feed.
Related articles
Nov 21
2025
2025
Enhancing API security with Amazon API Gateway TLS security policies
Jan 23
2024
2024
Consuming private Amazon API Gateway APIs using mutual TLS
Jun 7
2024
2024
Amazon API Gateway customers can easily secure APIs using Amazon Verified Permissions
Jun 3
2025
2025
Amazon API Gateway introduces routing rules for REST APIs
The AWS News Feed is currently looking for silver sponsors. If you want to support the AWS community and reach a large audience of AWS professionals, consider sponsoring the AWS News Feed.