{"id":3122,"date":"2022-12-19T09:03:00","date_gmt":"2022-12-19T09:03:00","guid":{"rendered":"https:\/\/sectigostore.com\/blog\/?p=3122"},"modified":"2025-05-07T13:19:56","modified_gmt":"2025-05-07T13:19:56","slug":"the-tls-handshake-explained-a-laymans-guide","status":"publish","type":"post","link":"https:\/\/sectigostore.com\/blog\/the-tls-handshake-explained-a-laymans-guide\/","title":{"rendered":"The TLS Handshake Explained [A Layman\u2019s Guide]"},"content":{"rendered":"\n<h2 class=\"wp-block-heading\">In 2025, the SSL\/TLS handshake is as much a part of cybersecurity on the internet as encryption itself \u2014 it\u2019s all about ensuring that the other party you\u2019re connecting to is legitimate and that no bad guys can steal your data<\/h2>\n\n\n\n<p>Think of the last time you made a purchase from your favorite online website. When you were logging into your user account, there was a risk that your information could be intercepted and stolen by cybercriminals. That\u2019s just the cold reality of our world \u2014 there\u2019s always a cybercriminal somewhere who would love to get their grubby hands on your sensitive information.<\/p>\n\n\n\n<p>The reason why logging in is so risky is that when data is in transit \u2014 meaning, it\u2019s moving from your browser to the server of the website you\u2019re connecting to \u2014 it\u2019s using an insecure connection. This is always the case unless the website\u2019s owner does something to make the connection secure. A TLS handshake helps mitigate this issue: the handshake is a way to bring <a href=\"https:\/\/www.thesslstore.com\/blog\/what-is-digital-identity-why-does-it-matter\/\">digital identity<\/a> and data integrity into the fold to help make such online transactions secure.<\/p>\n\n\n\n<p>But what is the TLS handshake (sometimes called an SSL handshake) and how does it help create a safer and more secure experience for website users?<\/p>\n\n\n\n<h2 class=\"wp-block-heading\">What Is the TLS Handshake? TLS Handshake Explained<\/h2>\n\n\n\n<p>The simple way of looking at the SSL\/TLS handshake is that it\u2019s a communication process that enables two parties to communicate securely on the internet. This is done by <a href=\"https:\/\/sectigostore.com\/page\/how-does-https-work\/\">enabling the use of the secure hypertext transfer protocol (HTTPS)<\/a> (instead of relying on the insecure traditional HTTP) by forming a TLS connection. TLS, which stands for transport layer security, is the successor of SSL (secure sockets layer) and is the set of rules browsers use to connect to websites on the internet. &nbsp;<\/p>\n\n\n\n<p>It&#8217;s customary to shake hands and introduce yourself when meeting someone for the first time. (Or, in the post-COVID era, bump elbows or some other similar greeting.) Similarly, the TLS handshake is how a web browser and the site server it\u2019s connecting to:<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>Make introductions<\/li>\n\n\n\n<li>Verify one or both parties&#8217; identities,<\/li>\n\n\n\n<li>Agree about how they want to communicate securely, and<\/li>\n\n\n\n<li>Negotiate the shared secret they want to use to ensure their communications stay private.<\/li>\n<\/ul>\n\n\n\n<p>What\u2019s the point of the introduction? Let\u2019s consider this question from the perspective of your site visitor and you as a site owner:<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li><strong>As a user:<\/strong> The TLS handshake gives your web browser (client) a chance to verify the digital identity of the entity it\u2019s trying to connect to on the other end (e.g., a website\u2019s server). This way, you know your data is being sent to and read by the right party.<\/li>\n\n\n\n<li><strong>As a site owner:<\/strong> The TLS handshake is an opportunity for your web server to introduce itself to the visitor\u2019s web client. It also enables your server to choose cryptographic algorithms that will allow you to receive and access the visitor\u2019s sensitive data securely. &nbsp;<\/li>\n<\/ul>\n\n\n\n<h2 class=\"wp-block-heading\">A TLS Handshake Uses Identity to Enable Secure Connection on Insecure Networks<\/h2>\n\n\n\n<p>Before the development of the internet (or, more specifically, <a href=\"https:\/\/sectigostore.com\/blog\/what-is-pki-a-laymans-guide-to-public-key-infrastructure\/\">public key infrastructure<\/a>), people had to travel and be in the same physical location to exchange information securely. There was a certain level of implicit trust involved, as you could see the person you were meeting with and could verify their identity by checking their official government-issued ID card.<\/p>\n\n\n\n<p>The creation of the internet made <a href=\"https:\/\/sectigostore.com\/blog\/top-5-key-considerations-for-secure-remote-access\/\">remote access<\/a> and communications possible, however, it also created a slew of new issues because it isn\u2019t secure. Anyone with the know-how can intercept messages (this is called a man-in-the-middle attack) and steal, alter, or even delete some or all of the data while it\u2019s in transit. &nbsp;<\/p>\n\n\n\n<p>This is where public key infrastructure and public key cryptography come into play: it\u2019s all about using secure processes and digital identity to create a secure communication channel. By using authentication of digital identity and protecting the integrity of your data, two parties can securely exchange data without having to physically be in the same place.<\/p>\n\n\n\n<p>The TLS handshake enables one or both parties to authenticate and negotiate all of the technical details regarding how to communicate. This means that there are mechanisms in place that help prove one or both parties are who they claim to be and aren\u2019t skeevy imposters. The handshake itself is just a term that describes the back-and-forth data exchanges that occur in the blink of an eye.<\/p>\n\n\n\n<figure class=\"wp-block-image size-full\"><img loading=\"lazy\" decoding=\"async\" width=\"840\" height=\"846\" src=\"https:\/\/sectigostore.com\/blog\/wp-content\/uploads\/2023\/01\/tls-connection-firefox-shadow.png\" alt=\"A screenshot of Amazon.com page information as displayed in Firefox. it shows technical details about the cipher suite used in the TLS handshake and connection process.\" class=\"wp-image-3124\" srcset=\"https:\/\/sectigostore.com\/blog\/wp-content\/uploads\/2023\/01\/tls-connection-firefox-shadow.png 840w, https:\/\/sectigostore.com\/blog\/wp-content\/uploads\/2023\/01\/tls-connection-firefox-shadow-298x300.png 298w, https:\/\/sectigostore.com\/blog\/wp-content\/uploads\/2023\/01\/tls-connection-firefox-shadow-150x150.png 150w, https:\/\/sectigostore.com\/blog\/wp-content\/uploads\/2023\/01\/tls-connection-firefox-shadow-560x564.png 560w\" sizes=\"auto, (max-width: 840px) 100vw, 840px\" \/><figcaption class=\"wp-element-caption\"><em>Image caption: An example screenshot from Firefox that shows a website connection is connected using the TLS 1.3 protocol via a combination of different cryptographic algorithms and 128-bit keys.<\/em><\/figcaption><\/figure>\n\n\n\n<h3 class=\"wp-block-heading\">A TLS Handshake Helps You Feel Confident Exchanging Info With Someone You\u2019ve Never Met<\/h3>\n\n\n\n<p>As we touched on, a TLS handshake is a way for one or both parties to identify themselves and engage in secure communications. In some ways, it reminds me of the time my husband and I traveled to Mexico. As native English-speaking Americans, we got first-hand experience of what it\u2019s like being somewhere where English isn\u2019t the primary language. (It was eye-opening, to say the least.) At the resort, we were fine because virtually everyone there spoke English. But once we traveled outside the resort, it was a different story.<\/p>\n\n\n\n<p>One of the most shocking experiences was when we landed at the airport. There were mobs of taxi drivers and transportation service workers from different companies waiting, trying to pick up unsuspecting travelers. Thankfully, we\u2019d done our research and read up on the travel scams that are common in the area. As such, we knew that many of these drivers would pretend to be our legitimate transportation company to get us to hire their services and pull different scams.<\/p>\n\n\n\n<p>The legitimate transport company we hired in advance gave the driver our names and provided us with the following information:<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>Specific directions about where to meet their driver at the airport,<\/li>\n\n\n\n<li>The driver\u2019s name,<\/li>\n\n\n\n<li>A description of what he\u2019d be wearing, and<\/li>\n\n\n\n<li>A description of what his vehicle would look like.<\/li>\n<\/ul>\n\n\n\n<p>In some ways, a TLS handshake is similar. Much like how the driver verified who it was we would be meeting up with and validated he was one of their employees, a server identifies itself using an <a href=\"https:\/\/sectigostore.com\/ssl-certificates\">SSL\/TLS certificate<\/a>. This is how things go in the traditional TLS handshake when you\u2019re connecting to a website. This is known as one-way authentication because only the server has to prove its identity.<\/p>\n\n\n\n<p>But a TLS handshake isn\u2019t only useful for one-way authentication; it can also be used for mutual or two-way authentication, meaning that the browser and web server it\u2019s connecting to can verify each other\u2019s identities. In the case of our Mexico trip, since we also provided our information to the company, the driver knew our names and could check our IDs to ensure he was picking up the right passengers.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\">An Overview of How the TLS Handshake Works<\/h2>\n\n\n\n<p>Okay, now that we know what a TLS handshake is, let\u2019s get into the fun part and explore how performing a TLS handshake works. The TLS handshake is basically a back-and-forth dialogue between your web server and the site visitor\u2019s client. In a traditional TLS handshake, the browser is the one that initiates the conversation, but it\u2019s up to the server to prove its identity. This way, the web client knows it\u2019s connecting to your legitimate website (and not an imposter\u2019s version of it).,<\/p>\n\n\n\n<p>When talking about how the TLS handshake works, though, it\u2019s important to point out that the specifics of this process vary depending on whether you\u2019re talking about TLS version 1.2 or TLS 1.3. Why? Because these two protocols work differently to achieve the same end goal. Let\u2019s talk through a TLS 1.2 handshake before moving on to see how differently TLS 1.3 operates.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\">How the TLS Handshake Works in TLS 1.2<\/h3>\n\n\n\n<p>TLS 1.2 is the older and most commonly used protocol. <a href=\"https:\/\/www.ssllabs.com\/ssl-pulse\/\">According to SSL Lab\u2019s January 2023 data<\/a> (based on Alexa\u2019s list of the top 150,000 SSL\/TLS enabled websites), 99.9% of websites still support TLS 1.2 to enable secure <a href=\"https:\/\/www.thesslstore.com\/blog\/what-is-https-what-https-stands-for\/\">HTTPS connections<\/a>. It involves two round trips \u2014 this term refers to the number of times the initiating party has to reach out and receive messages from the server.<\/p>\n\n\n\n<p>Let\u2019s take a quick peek at what this looks like in practice:<\/p>\n\n\n\n<figure class=\"wp-block-image size-full\"><img loading=\"lazy\" decoding=\"async\" width=\"701\" height=\"896\" src=\"https:\/\/sectigostore.com\/blog\/wp-content\/uploads\/2023\/01\/tls-12-handshake-roundtrips-shadow.png\" alt=\"TLS handshake graphic: A visual that illustrates how TLS 1.2 handshake works  in multiple round trips\" class=\"wp-image-3126\" srcset=\"https:\/\/sectigostore.com\/blog\/wp-content\/uploads\/2023\/01\/tls-12-handshake-roundtrips-shadow.png 701w, https:\/\/sectigostore.com\/blog\/wp-content\/uploads\/2023\/01\/tls-12-handshake-roundtrips-shadow-235x300.png 235w, https:\/\/sectigostore.com\/blog\/wp-content\/uploads\/2023\/01\/tls-12-handshake-roundtrips-shadow-560x716.png 560w\" sizes=\"auto, (max-width: 701px) 100vw, 701px\" \/><figcaption class=\"wp-element-caption\"><em>Image caption: A simplified illustration that showcases how the TLS 1.2 handshake works.<\/em><\/figcaption><\/figure>\n\n\n\n<p>Look at the first golden arrow. It reaches out from the web client to the web server before circling back again. Then the client reaches out a second time (as illustrated with the dark arrow); it receives a response from the server, and the two use the exchanged data to establish a secure, encrypted connection. This is basically a series of four communications that occur within milliseconds:<\/p>\n\n\n\n<h4 class=\"wp-block-heading\">1. Client Hello<\/h4>\n\n\n\n<p>This is when the user\u2019s web client initially reaches out to establish a connection with the web server. Basically, it\u2019s initiating an introduction and making it known to the server that it wishes to connect.<\/p>\n\n\n\n<h4 class=\"wp-block-heading\">2. Server Hello and Certificate Delivery<\/h4>\n\n\n\n<p>This next step is when the server responds for the first time. It\u2019s an opportunity for the server to:<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>Present its SSL\/TLS certificate (i.e., its version of a passport to prove its digital identity),<\/li>\n\n\n\n<li>Share its <a href=\"https:\/\/sectigostore.com\/blog\/what-is-an-ssl-tls-cipher-suite\/\">SSL\/TLS cipher suite<\/a> information (i.e., what cryptographic algorithms it supports), and<\/li>\n\n\n\n<li>Provide information that\u2019s necessary for key exchanges using specific algorithms (it\u2019s not a requirement for all SSL\/TLS handshakes)<\/li>\n<\/ul>\n\n\n\n<p>Of course, things can go wonky in this part of the process if your <a href=\"https:\/\/sectigostore.com\/page\/what-is-a-digital-certificate\/\">digital certificate<\/a> is expired or there\u2019s a misconfiguration issue. Check out our article on the <a href=\"https:\/\/sectigostore.com\/blog\/tls-handshake-failed-how-to-eliminate-error-in-firefox\/\">TLS handshake failed<\/a> error to learn more about these situations and how to mitigate them.<\/p>\n\n\n\n<h4 class=\"wp-block-heading\">3. Client Key and Cipher Spec Exchange<\/h4>\n\n\n\n<p>Here, the client sends the server information its needs to decrypt and use a secure session key. (This is what will be used to create the secure, encrypted communication channel.) It also gives the server the heads up that it\u2019s switching to that encrypted channel to communicate from this point on.<\/p>\n\n\n\n<h4 class=\"wp-block-heading\">4. Server Changes to the Agreed Upon Cipher So Both Parties Can Connect Securely<\/h4>\n\n\n\n<p>Once the server gets the message, it takes the info received from the user\u2019s web client and decrypts it. This enables it to calculate a shared session key that can be used to connect via an authenticated, secure channel.<\/p>\n\n\n\n<p>Yup. That\u2019s, basically, the TLS 1.2 Handshake in a nutshell! Now that we\u2019ve seen how this works, let\u2019s switch gears to change out the streamlined version of this process that occurs when using the TLS 1.3 handshake.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\">The TLS Handshake in TLS 1.3 Is Similar But Requires Fewer Steps<\/h3>\n\n\n\n<p><a href=\"https:\/\/sectigostore.com\/blog\/tls-version-1-3-what-to-know-about-the-latest-tls-version\/\">TLS 1.3<\/a> is the latest version of this data exchange protocol. While it\u2019s supported by 57.8% of websites (as of SSL Lab\u2019s October 2022 data), it\u2019s still far from being widely accepted or supported by browsers. However, it does support stronger and more secure algorithms.<\/p>\n\n\n\n<p>One of the biggest differences between the TLS handshake in TLS 1.2 and 1.3 is that TLS 1.3 offers a fully signed handshake process that requires fewer round trips. This increases efficiency and reduces latency because it takes less time to complete. Simply put, it\u2019s a win for you and for your website users \u2014 particularly if you\u2019re a large organization that handles traffic on a massive scale. &nbsp;<\/p>\n\n\n\n<p>Here\u2019s a quick look at how the process works:<\/p>\n\n\n\n<figure class=\"wp-block-image size-full\"><img loading=\"lazy\" decoding=\"async\" width=\"678\" height=\"662\" src=\"https:\/\/sectigostore.com\/blog\/wp-content\/uploads\/2023\/01\/tls13-handshake-roundtrip-shadow.png\" alt=\"TLS handshake graphic: A visual that illustrates how TLS 1.2 handshake works  in multiple round trips\" class=\"wp-image-3125\" srcset=\"https:\/\/sectigostore.com\/blog\/wp-content\/uploads\/2023\/01\/tls13-handshake-roundtrip-shadow.png 678w, https:\/\/sectigostore.com\/blog\/wp-content\/uploads\/2023\/01\/tls13-handshake-roundtrip-shadow-300x293.png 300w, https:\/\/sectigostore.com\/blog\/wp-content\/uploads\/2023\/01\/tls13-handshake-roundtrip-shadow-560x547.png 560w\" sizes=\"auto, (max-width: 678px) 100vw, 678px\" \/><figcaption class=\"wp-element-caption\"><em>Image caption: An illustration that shows how a TLS 1.3 handshake only involves one round trip.<\/em><\/figcaption><\/figure>\n\n\n\n<p>Of course, the single round-trip isn\u2019t the only difference between TLS 1.2 and 1.3. Remember the more secure algorithms we mentioned earlier? TLS 1.3 eliminated the RSA (Rivest Shamir Adleman) key exchange, so it supports only algorithms that offer perfect forward secrecy. (This is what prevents data from being compromised retroactively by using compromised keys to decrypt saved communications.)<\/p>\n\n\n\n<p>Another change is the addition of a feature that helps speed up TLS 1.3 even more: zero round trip time resumption, or what\u2019s otherwise known as 0-RTT. The idea here is that users who have previously visited your site can connect more quickly because they resume the session they\u2019d previously established.<\/p>\n\n\n\n<p>For a more in depth look at the TLS handshake, be sure to check out this great explainer video from Computerphile:<\/p>\n\n\n\n<figure class=\"wp-block-embed is-type-video is-provider-youtube wp-block-embed-youtube wp-embed-aspect-16-9 wp-has-aspect-ratio\"><div class=\"wp-block-embed__wrapper\">\n<iframe loading=\"lazy\" title=\"TLS Handshake Explained - Computerphile\" width=\"940\" height=\"529\" src=\"https:\/\/www.youtube.com\/embed\/86cQJ0MMses?feature=oembed\" frameborder=\"0\" allow=\"accelerometer; autoplay; clipboard-write; encrypted-media; gyroscope; picture-in-picture; web-share\" referrerpolicy=\"strict-origin-when-cross-origin\" allowfullscreen><\/iframe>\n<\/div><\/figure>\n\n\n\n<h2 class=\"wp-block-heading\">Final Takeaways on the TLS Handshake and Its Role in Internet Security<\/h2>\n\n\n\n<p>Much like my experience in Mexico, I hope this article has been enlightening and has taught you a lot about what the TLS handshake is and how it facilitates secure communications. It\u2019s a critical process that occurs in the background, unbeknownst to your website users.<\/p>\n\n\n\n<p>No matter how you look at it, the TLS handshake has become integral to secure online authentication and communications. Not only is it a requirement of cybersecurity regulations and <a href=\"https:\/\/sectigostore.com\/blog\/data-privacy-laws-ccpa-hipaa-gdpr-glba-lgpd\/\">data privacy laws<\/a> across many industries and geographic regions in the sense that many of these regulations require the use of encryption to protect data (in transit, at rest, or both), but it\u2019s also just a good website security best practice to implement.<\/p>\n\n\n\n<p>As a website owner, you have the responsibility to ensure that you keep your website and its connections as secure as possible. To learn more about how to make your website as secure as possible, be sure to check out the following resources:<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li><a href=\"https:\/\/sectigostore.com\/blog\/website-security-issues-and-solutions\/\">How to Secure Your Website: Website Security Issues and Solutions<\/a><\/li>\n\n\n\n<li><a href=\"https:\/\/sectigostore.com\/blog\/the-top-5-web-security-issues-and-solutions\/\">The Top 5 Web Security Issues and Solutions<\/a><\/li>\n\n\n\n<li><a href=\"https:\/\/sectigostore.com\/blog\/how-to-secure-a-website-website-security-tips-for-businesses\/\">21 Website Security Tips for Businesses<\/a><\/li>\n\n\n\n<li><a href=\"https:\/\/sectigostore.com\/blog\/secure-wordpress-website\/\">8 Crucial Tips to Secure Your WordPress Website<\/a><\/li>\n<\/ul>\n","protected":false},"excerpt":{"rendered":"<p>In 2025, the SSL\/TLS handshake is as much a part of cybersecurity on the internet as encryption itself \u2014 it\u2019s all about ensuring that the other party you\u2019re connecting to&#8230;<\/p>\n","protected":false},"author":8,"featured_media":3123,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":"","tve_updated_post":"","tve_custom_css":"","tve_user_custom_css":"","tve_globals":{},"tcb2_ready":0,"tcb_editor_enabled":0,"tve_landing_page":"","_tve_header":"","_tve_footer":""},"categories":[9],"tags":[279,68,278],"class_list":["post-3122","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-encryption","tag-tls-1-2","tag-tls-1-3","tag-tls-handshake","post-with-tags"],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v27.7 - https:\/\/yoast.com\/product\/yoast-seo-wordpress\/ -->\n<title>The TLS Handshake Explained [A Layman\u2019s Guide] - InfoSec Insights<\/title>\n<meta name=\"description\" content=\"A TLS handshake is how two entities introduce themselves in order to verify one or both digital identities &amp; establish a secure connection.\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/sectigostore.com\/blog\/the-tls-handshake-explained-a-laymans-guide\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"The TLS Handshake Explained [A Layman\u2019s Guide] - InfoSec Insights\" \/>\n<meta property=\"og:description\" content=\"A TLS handshake is how two entities introduce themselves in order to verify one or both digital identities &amp; establish a secure connection.\" \/>\n<meta property=\"og:url\" content=\"https:\/\/sectigostore.com\/blog\/the-tls-handshake-explained-a-laymans-guide\/\" \/>\n<meta property=\"og:site_name\" content=\"InfoSec Insights\" \/>\n<meta property=\"article:published_time\" content=\"2022-12-19T09:03:00+00:00\" \/>\n<meta property=\"article:modified_time\" content=\"2025-05-07T13:19:56+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/sectigostore.com\/blog\/wp-content\/uploads\/2023\/01\/tls-handshake-feature.jpg\" \/>\n\t<meta property=\"og:image:width\" content=\"1600\" \/>\n\t<meta property=\"og:image:height\" content=\"1000\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/jpeg\" \/>\n<meta name=\"author\" content=\"Casey Crane\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"Casey Crane\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"11 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\\\/\\\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\\\/\\\/sectigostore.com\\\/blog\\\/the-tls-handshake-explained-a-laymans-guide\\\/#article\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/sectigostore.com\\\/blog\\\/the-tls-handshake-explained-a-laymans-guide\\\/\"},\"author\":{\"name\":\"Casey Crane\",\"@id\":\"https:\\\/\\\/sectigostore.com\\\/blog\\\/#\\\/schema\\\/person\\\/559abd5fa4d9d651eaf18d9b9e91a64c\"},\"headline\":\"The TLS Handshake Explained [A Layman\u2019s Guide]\",\"datePublished\":\"2022-12-19T09:03:00+00:00\",\"dateModified\":\"2025-05-07T13:19:56+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\\\/\\\/sectigostore.com\\\/blog\\\/the-tls-handshake-explained-a-laymans-guide\\\/\"},\"wordCount\":2303,\"image\":{\"@id\":\"https:\\\/\\\/sectigostore.com\\\/blog\\\/the-tls-handshake-explained-a-laymans-guide\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/sectigostore.com\\\/blog\\\/wp-content\\\/uploads\\\/2023\\\/01\\\/tls-handshake-feature.jpg\",\"keywords\":[\"TLS 1.2\",\"TLS 1.3\",\"TLS handshake\"],\"articleSection\":[\"Encryption\"],\"inLanguage\":\"en-US\"},{\"@type\":\"WebPage\",\"@id\":\"https:\\\/\\\/sectigostore.com\\\/blog\\\/the-tls-handshake-explained-a-laymans-guide\\\/\",\"url\":\"https:\\\/\\\/sectigostore.com\\\/blog\\\/the-tls-handshake-explained-a-laymans-guide\\\/\",\"name\":\"The TLS Handshake Explained [A Layman\u2019s Guide] - InfoSec Insights\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/sectigostore.com\\\/blog\\\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\\\/\\\/sectigostore.com\\\/blog\\\/the-tls-handshake-explained-a-laymans-guide\\\/#primaryimage\"},\"image\":{\"@id\":\"https:\\\/\\\/sectigostore.com\\\/blog\\\/the-tls-handshake-explained-a-laymans-guide\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/sectigostore.com\\\/blog\\\/wp-content\\\/uploads\\\/2023\\\/01\\\/tls-handshake-feature.jpg\",\"datePublished\":\"2022-12-19T09:03:00+00:00\",\"dateModified\":\"2025-05-07T13:19:56+00:00\",\"author\":{\"@id\":\"https:\\\/\\\/sectigostore.com\\\/blog\\\/#\\\/schema\\\/person\\\/559abd5fa4d9d651eaf18d9b9e91a64c\"},\"description\":\"A TLS handshake is how two entities introduce themselves in order to verify one or both digital identities & establish a secure connection.\",\"breadcrumb\":{\"@id\":\"https:\\\/\\\/sectigostore.com\\\/blog\\\/the-tls-handshake-explained-a-laymans-guide\\\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\\\/\\\/sectigostore.com\\\/blog\\\/the-tls-handshake-explained-a-laymans-guide\\\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/sectigostore.com\\\/blog\\\/the-tls-handshake-explained-a-laymans-guide\\\/#primaryimage\",\"url\":\"https:\\\/\\\/sectigostore.com\\\/blog\\\/wp-content\\\/uploads\\\/2023\\\/01\\\/tls-handshake-feature.jpg\",\"contentUrl\":\"https:\\\/\\\/sectigostore.com\\\/blog\\\/wp-content\\\/uploads\\\/2023\\\/01\\\/tls-handshake-feature.jpg\",\"width\":1600,\"height\":1000},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\\\/\\\/sectigostore.com\\\/blog\\\/the-tls-handshake-explained-a-laymans-guide\\\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\\\/\\\/sectigostore.com\\\/blog\\\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"The TLS Handshake Explained [A Layman\u2019s Guide]\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\\\/\\\/sectigostore.com\\\/blog\\\/#website\",\"url\":\"https:\\\/\\\/sectigostore.com\\\/blog\\\/\",\"name\":\"InfoSec Insights\",\"description\":\"SectigoStore.com Blog\",\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\\\/\\\/sectigostore.com\\\/blog\\\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"},{\"@type\":\"Person\",\"@id\":\"https:\\\/\\\/sectigostore.com\\\/blog\\\/#\\\/schema\\\/person\\\/559abd5fa4d9d651eaf18d9b9e91a64c\",\"name\":\"Casey Crane\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/c18d819d34a1995e91a4aa7518e9048df7856f336a1ede2262a572db7b1c2506?s=96&d=mm&r=g\",\"url\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/c18d819d34a1995e91a4aa7518e9048df7856f336a1ede2262a572db7b1c2506?s=96&d=mm&r=g\",\"contentUrl\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/c18d819d34a1995e91a4aa7518e9048df7856f336a1ede2262a572db7b1c2506?s=96&d=mm&r=g\",\"caption\":\"Casey Crane\"},\"description\":\"Casey is a writer and editor with a background in journalism, marketing, PR and communications. She has written about cyber security and information technology for several industry publications, including InfoSec Insights, Hashed Out, Experfy, HackerNoon, and Cybercrime Magazine.\"}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"The TLS Handshake Explained [A Layman\u2019s Guide] - InfoSec Insights","description":"A TLS handshake is how two entities introduce themselves in order to verify one or both digital identities & establish a secure connection.","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/sectigostore.com\/blog\/the-tls-handshake-explained-a-laymans-guide\/","og_locale":"en_US","og_type":"article","og_title":"The TLS Handshake Explained [A Layman\u2019s Guide] - InfoSec Insights","og_description":"A TLS handshake is how two entities introduce themselves in order to verify one or both digital identities & establish a secure connection.","og_url":"https:\/\/sectigostore.com\/blog\/the-tls-handshake-explained-a-laymans-guide\/","og_site_name":"InfoSec Insights","article_published_time":"2022-12-19T09:03:00+00:00","article_modified_time":"2025-05-07T13:19:56+00:00","og_image":[{"width":1600,"height":1000,"url":"https:\/\/sectigostore.com\/blog\/wp-content\/uploads\/2023\/01\/tls-handshake-feature.jpg","type":"image\/jpeg"}],"author":"Casey Crane","twitter_card":"summary_large_image","twitter_misc":{"Written by":"Casey Crane","Est. reading time":"11 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/sectigostore.com\/blog\/the-tls-handshake-explained-a-laymans-guide\/#article","isPartOf":{"@id":"https:\/\/sectigostore.com\/blog\/the-tls-handshake-explained-a-laymans-guide\/"},"author":{"name":"Casey Crane","@id":"https:\/\/sectigostore.com\/blog\/#\/schema\/person\/559abd5fa4d9d651eaf18d9b9e91a64c"},"headline":"The TLS Handshake Explained [A Layman\u2019s Guide]","datePublished":"2022-12-19T09:03:00+00:00","dateModified":"2025-05-07T13:19:56+00:00","mainEntityOfPage":{"@id":"https:\/\/sectigostore.com\/blog\/the-tls-handshake-explained-a-laymans-guide\/"},"wordCount":2303,"image":{"@id":"https:\/\/sectigostore.com\/blog\/the-tls-handshake-explained-a-laymans-guide\/#primaryimage"},"thumbnailUrl":"https:\/\/sectigostore.com\/blog\/wp-content\/uploads\/2023\/01\/tls-handshake-feature.jpg","keywords":["TLS 1.2","TLS 1.3","TLS handshake"],"articleSection":["Encryption"],"inLanguage":"en-US"},{"@type":"WebPage","@id":"https:\/\/sectigostore.com\/blog\/the-tls-handshake-explained-a-laymans-guide\/","url":"https:\/\/sectigostore.com\/blog\/the-tls-handshake-explained-a-laymans-guide\/","name":"The TLS Handshake Explained [A Layman\u2019s Guide] - InfoSec Insights","isPartOf":{"@id":"https:\/\/sectigostore.com\/blog\/#website"},"primaryImageOfPage":{"@id":"https:\/\/sectigostore.com\/blog\/the-tls-handshake-explained-a-laymans-guide\/#primaryimage"},"image":{"@id":"https:\/\/sectigostore.com\/blog\/the-tls-handshake-explained-a-laymans-guide\/#primaryimage"},"thumbnailUrl":"https:\/\/sectigostore.com\/blog\/wp-content\/uploads\/2023\/01\/tls-handshake-feature.jpg","datePublished":"2022-12-19T09:03:00+00:00","dateModified":"2025-05-07T13:19:56+00:00","author":{"@id":"https:\/\/sectigostore.com\/blog\/#\/schema\/person\/559abd5fa4d9d651eaf18d9b9e91a64c"},"description":"A TLS handshake is how two entities introduce themselves in order to verify one or both digital identities & establish a secure connection.","breadcrumb":{"@id":"https:\/\/sectigostore.com\/blog\/the-tls-handshake-explained-a-laymans-guide\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/sectigostore.com\/blog\/the-tls-handshake-explained-a-laymans-guide\/"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/sectigostore.com\/blog\/the-tls-handshake-explained-a-laymans-guide\/#primaryimage","url":"https:\/\/sectigostore.com\/blog\/wp-content\/uploads\/2023\/01\/tls-handshake-feature.jpg","contentUrl":"https:\/\/sectigostore.com\/blog\/wp-content\/uploads\/2023\/01\/tls-handshake-feature.jpg","width":1600,"height":1000},{"@type":"BreadcrumbList","@id":"https:\/\/sectigostore.com\/blog\/the-tls-handshake-explained-a-laymans-guide\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/sectigostore.com\/blog\/"},{"@type":"ListItem","position":2,"name":"The TLS Handshake Explained [A Layman\u2019s Guide]"}]},{"@type":"WebSite","@id":"https:\/\/sectigostore.com\/blog\/#website","url":"https:\/\/sectigostore.com\/blog\/","name":"InfoSec Insights","description":"SectigoStore.com Blog","potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/sectigostore.com\/blog\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Person","@id":"https:\/\/sectigostore.com\/blog\/#\/schema\/person\/559abd5fa4d9d651eaf18d9b9e91a64c","name":"Casey Crane","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/secure.gravatar.com\/avatar\/c18d819d34a1995e91a4aa7518e9048df7856f336a1ede2262a572db7b1c2506?s=96&d=mm&r=g","url":"https:\/\/secure.gravatar.com\/avatar\/c18d819d34a1995e91a4aa7518e9048df7856f336a1ede2262a572db7b1c2506?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/c18d819d34a1995e91a4aa7518e9048df7856f336a1ede2262a572db7b1c2506?s=96&d=mm&r=g","caption":"Casey Crane"},"description":"Casey is a writer and editor with a background in journalism, marketing, PR and communications. She has written about cyber security and information technology for several industry publications, including InfoSec Insights, Hashed Out, Experfy, HackerNoon, and Cybercrime Magazine."}]}},"_links":{"self":[{"href":"https:\/\/sectigostore.com\/blog\/wp-json\/wp\/v2\/posts\/3122","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/sectigostore.com\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/sectigostore.com\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/sectigostore.com\/blog\/wp-json\/wp\/v2\/users\/8"}],"replies":[{"embeddable":true,"href":"https:\/\/sectigostore.com\/blog\/wp-json\/wp\/v2\/comments?post=3122"}],"version-history":[{"count":0,"href":"https:\/\/sectigostore.com\/blog\/wp-json\/wp\/v2\/posts\/3122\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/sectigostore.com\/blog\/wp-json\/wp\/v2\/media\/3123"}],"wp:attachment":[{"href":"https:\/\/sectigostore.com\/blog\/wp-json\/wp\/v2\/media?parent=3122"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/sectigostore.com\/blog\/wp-json\/wp\/v2\/categories?post=3122"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/sectigostore.com\/blog\/wp-json\/wp\/v2\/tags?post=3122"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}