TLS Version 1.2
The Importance of TLS version 1.2
Versions of TLS previous to version 1.2 have known vulnerabilities.
Limitations of TLS version 1.2
All versions of TLS are still susceptible to poor randomization of numbers and are also vulnerable to hijacked certificate authority certificates.
Vidder’s TLS version 1.2 Recommendations
Vidder strongly recommends running TLS version 1.2 for all SSL implementations. Any existing TLS version 1.0 and version 1.1 implementations should immediately be upgraded to version 1.2.
In addition, products that create RSA key pairs to be used for SSL authentication need to be up and running for a period of time before creating the key pairs such that they can create truly random keys.
Companies using TLS for internal (non-Internet) facing applications should use self-signed certificates such that the company is it’s own "trusted third party" instead of using an outside certificate authority as it’s trusted third party.