A cryptographic protocol standardised by the IETF that provides mutual authentication, confidentiality and data integrity for communications over a computer network, succeeding the deprecated Secure Sockets Layer and currently at version 1.3 (RFC 8446).

Semantic Classification

Content

  • Transport Layer Security secures data in transit by establishing an encrypted channel between communicating parties. It uses a handshake to authenticate at least one party, negotiate cryptographic parameters and derive session keys.
  • The protocol relies on public key infrastructure and X.509 certificates to bind identities to keys. It is widely used to protect web traffic, email and other application protocols, and has evolved through successive versions to remove weak algorithms.

Provenance