TLS 1.2 isn't end of life, but it will be soon
Two RFCs in July took away three of TLS 1.2’s key exchange methods and its entire future. The banned ones ship enabled by default in nginx, Apache, and Windows Server, which means you are probably still offering them.