An SSL certificate is a digital certificate that allows a browser and web server to establish an encrypted TLS connection. The term “SSL” is still widely used even though modern secure connections use TLS.
What happens when you open an HTTPS website?
The server presents its certificate, the browser checks the hostname, issuer, validity period and trust chain, and both sides negotiate the cryptographic parameters for the session. If those checks succeed, the connection can be encrypted.
What does an SSL certificate protect?
SSL/TLS protects information while it travels between endpoints. That includes passwords, forms, account information and other data sent between a visitor and a website. It does not fix vulnerable application code or weak passwords, so it should be part of a broader security strategy.
Does every website need HTTPS?
For modern public websites, HTTPS should be treated as standard. Browsers expect secure connections and can warn users when a site is not properly protected.
Which certificate should you choose?
Choose according to validation and coverage. DV verifies domain control, OV adds organization validation and EV uses a more extensive verification process. Wildcard and Multi-Domain certificates solve coverage requirements for multiple subdomains or domains.
What Is an SSL Certificate and Why Do You Need One? — FAQs
Is SSL the same as TLS?
TLS is the modern protocol used for secure connections. “SSL certificate” remains the common market term for certificates used with HTTPS.
Does HTTPS mean a website is completely secure?
No. HTTPS protects the connection, but website security also depends on software, access controls, configuration, backups and operational practices.
Need the right SSL certificate?
Compare validation levels, domain coverage and trusted brands before you buy.
Compare SSL certificates