How SSL Works from Thawte (2024)

When an Internet user visits a secure web site, an SSL certificate provides identification information about the web server and establishes an encrypted connection. This process happens in a fraction of a second.

What Happens between the Web Browser and Server
  1. A browser attempts to connect to a web site secured with SSL. The browser requests that the web server identify itself.
  2. The server sends the browser a copy of its SSL certificate.
  3. The browser checks whether it trusts the SSL certificate. If so, it sends a message to the server.
  4. The server sends back a digitally signed acknowledgement to start an SSL encrypted session.
  5. Encrypted data is shared between the browser and the server.
SSL Fundamentals

There are 3 essential elements at work in the process described above: a protocol for communications (SSL), credentials for establishing identity (the SSL certificate), and a third party that vouches for the credentials (the certificate authority).

  • Computers use protocols to allow different systems to work together. Web servers and web browsers rely on the Secure Sockets Layer (SSL) protocol to enable encrypted communications. The browser’s request that the server identify itself is a function of the SSL protocol.
  • Credentials for establishing identity are common to our everyday lives: a driver’s license, a passport, a company badge. An SSL certificate is a type of digital certificate that serves as a credential in the online world. Each SSL certificate uniquely identifies a specific domain (such as thawte.com) and a web server.
  • Our trust of a credential depends on our confidence in the organization that issued it. Certificate authorities have a variety of methods to verify information provided by individuals or organizations. Established certificate authorities, such as Thawte, are well known and trusted by browser vendors. Browsers extend that trust to digital certificates that are verified by the certificate authority.
Lifecycle of an SSL Certificate

If you need to secure your web site, it is quick and easy to request an SSL certificate and install it.

  1. Generate a Certificate Signing Request (CSR) for the web server you plan to secure. If you do not manage your own web server, contact your web host or Internet service provider to request a CSR.
  2. Select an SSL Certificate and click buy.
  3. Pick up your certificate in to your Thawte® Certificate Center Account.
  4. Follow installation instructions for your Web server.
  5. Download the Thawte® Trusted Site Seal to display on pages within your secured domain.

At the end of the SSL certificate’s validity period (1-5 years, depending on the certificate type and your selection), you have the option to renew your SSL certificate. You may need to provide additional information for authentication or generate a new CSR.

Why choose Thawte?

Thawte is trusted by millions of people worldwide. When we issue an SSL certificate, we know that our name will appear next to yours as the trusted third party who verified it. We take that trust seriously and lead the industry with rigorous authentication methods and a global infrastructure to support real-time certificate look-ups.

contact sales

US Direct:
+1 801 769 0233
South Africa:
+353 1 793 9142
Germany:
+49 69 3807 89081
France:
+33 1 57 32 42 68
UK:
+44 203 450 5486

How SSL Works from Thawte (2)

How SSL Works from Thawte (2024)

FAQs

How does SSL actually work? ›

SSL initiates an authentication process called a handshake between two communicating devices to ensure that both devices are really who they claim to be. SSL also digitally signs data in order to provide data integrity, verifying that the data is not tampered with before reaching its intended recipient.

How does an SSL certificate work step by step? ›

How does SSL/TLS work?
  1. Secure communication begins with a TLS handshake, in which the two communicating parties open a secure connection and exchange the public key.
  2. During the TLS handshake, the two parties generate session keys, and the session keys encrypt and decrypt all communications after the TLS handshake.

How does SSL session work? ›

SSL uses digital signatures and digital certificates for establishing a trusted relationship between a sender and a receiver of information sent over a network connection. A cipher suite is a set of ciphers (encryption algorithms) used for encrypting sensitive information.

What is the SSL protocol and how does it work? ›

The Secure Sockets Layer (SSL) protocol was developed by Netscape Communications Corporation. SSL ensures the data that is transferred between a client and a server remains private. This protocol enables the client to authenticate the identity of the server.

What is SSL in simple terms? ›

SSL: Secure Sockets Layer

SSL is standard technology for securing an internet connection by encrypting data sent between a website and a browser (or between two servers). It prevents hackers from seeing or stealing any information transferred, including personal or financial data.

What is an example of SSL? ›

SSL protocol and SSL certificate

One example of sensitive data protected by SSL is financial information, such as credit card numbers. Other examples include: User login credentials. Personally identifiable information (PII).

How is SSL certificate checked? ›

To check an SSL certificate on any website, all you need to do is follow two simple steps.
  1. First, check if the URL of the website begins with HTTPS, where S indicates it has an SSL certificate.
  2. Second, click on the padlock icon on the address bar to check all the detailed information related to the certificate.

How does SSL work between browser and server? ›

The browser sends back a symmetric session key and the server decrypts the symmetric session key using its private key. The server then sends back an acknowledgement encrypted with the session key to start the encrypted session.

How does TLS work step by step? ›

For this reason, TLS uses asymmetric cryptography for securely generating and exchanging a session key. The session key is then used for encrypting the data transmitted by one party, and for decrypting the data received at the other end. Once the session is over, the session key is discarded.

How long does it take for SSL to work? ›

The SSL kicks in immediately when installed. Let's encrypt SSL installations need a few minutes. The Premium SSL certificates are installed within a few hours in most cases.

Is SSL 100% Secure? ›

SSL provides the maximum level of security for users. Organizations such as Google encourage the use of HTTPS protocol to ensure the safety of its users.

Has SSL ever been hacked? ›

While it's unlikely that your SSL certificate will be hacked, there are other ways an SSL can be compromised. Ensure your SSL has a fighting chance by doing the following: Protect your private key: Hackers won't even need to guess anything by brute force if they somehow get their hands on your private key.

Is SSL really secure? ›

SSL establishes a secure connection between your browser and the website or server that you visit. Third parties cannot hack this connection to see what is being shared.

Why use really simple SSL? ›

Really Simple SSL is a one click plugin that automatically detects your settings and configures your WordPress website to run over https. You must have an SSL security certificate installed on the server for the site, but otherwise it takes care of all of the rest for you.

Top Articles
Latest Posts
Article information

Author: Rev. Leonie Wyman

Last Updated:

Views: 6151

Rating: 4.9 / 5 (59 voted)

Reviews: 82% of readers found this page helpful

Author information

Name: Rev. Leonie Wyman

Birthday: 1993-07-01

Address: Suite 763 6272 Lang Bypass, New Xochitlport, VT 72704-3308

Phone: +22014484519944

Job: Banking Officer

Hobby: Sailing, Gaming, Basketball, Calligraphy, Mycology, Astronomy, Juggling

Introduction: My name is Rev. Leonie Wyman, I am a colorful, tasty, splendid, fair, witty, gorgeous, splendid person who loves writing and wants to share my knowledge and understanding with you.