minimumProtocolVersion property
Minimum version of the SSL protocol that you want CloudFront to use for HTTPS connections. Can only be set if cloudfrontDefaultCertificate = false. See all possible values in this table under "Security policy." Some examples include: TLSv1.2_2019 and TLSv1.2_2021. Default: TLSv1. NOTE: If you are using a custom certificate (specified with acmCertificateArn or iamCertificateId), and have specified sni-only in sslSupportMethod, TLSv1 or later must be specified. If you have specified vip in sslSupportMethod, only SSLv3 or TLSv1 can be specified. If you have specified cloudfrontDefaultCertificate, TLSv1 must be specified.
Implementation
final pulumi.Input<String?>? minimumProtocolVersion;