Security guidelines for Transport Layer Security 2025-05

This publication offers recommendations on how to set up a TLS configuration that protects your application in an appropriate manner.

Constituents: These guidelines are written for security professionals who play a role in the configuration or management of a TLS implementation and seek tools to secure this in an appropriate manner.

TLS (Transport Layer Security) is a standardized protocol used to establish and maintain an encrypted connection between two computer systems or applications: a client and a server. This secure connection ensures the confidentiality and integrity of the data exchanged between the client and the server.

TLS enables safe browsing on the internet, secure email communication, and remote access to your digital workspace through a TLS-based VPN solution. It is also used to secure Operational Technology (OT) networks and to ensure that systems and applications within your own network environment can communicate with each other securely.