The following resources provide guidance to help make sure that your clients are using TLS 1.2 or a later version and to disable TLS 1.0 and 1.1. For Windows 7 clients that connect to Office 365, make sure that TLS 1.2 is the default secure protocol in WinHTTP in Windows. How to Activate TLS 1.2 on Windows Server 2008 R2 and IIS Install the patch for TLS 1.2 When your server is up-to-date with all security patches offered by Microsoft, then you probably already have TLS 1.2 installed. In this case, you can jump to the next section and activate it. Should you not have all patches installed, you can manually download KB4019276 from the Microsoft Update Catalog. TLS 1.2 support for Microsoft SQL Server Nov 24, 2015

Enable Transport Layer Security (TLS) 1.2 overview TLS 1.2 is more secure than the previous cryptographic protocols such as SSL 2.0, SSL 3.0, TLS 1.0, and TLS 1.1. Essentially, TLS 1.2 keeps data being transferred across the network more secure. Where does Configuration Manager use encryption protocols like TLS 1.2? Enable Transport Layer Security (TLS) 1.2 on the site

TLS 1.2 (2008) introduced a means to identify the hash used for digital signatures. While permitting the use of stronger hash functions for digital signatures in the future (rsa,sha256/sha384/sha512) over the SSL 3.0 conservative choice (rsa,sha1+md5), the TLS 1.2 protocol change inadvertently and substantially weakened the default digital signatures and provides (rsa,sha1) and even (rsa,md5). How to check TLS 1.2 - Windows Server - Spiceworks Jul 11, 2020