{"id":6202,"date":"2018-08-15T10:31:27","date_gmt":"2018-08-15T14:31:27","guid":{"rendered":"https:\/\/www.thesslstore.com\/blog\/?p=6202"},"modified":"2025-03-28T07:54:46","modified_gmt":"2025-03-28T11:54:46","slug":"tls-1-3-approved","status":"publish","type":"post","link":"https:\/\/www.thesslstore.com\/blog\/tls-1-3-approved\/","title":{"rendered":"The IETF has FINALLY published TLS 1.3 as RFC 8446"},"content":{"rendered":"\n<h2 class=\"wp-block-heading\" id=\"h-the-wait-is-finally-over-ietf-has-published-tls-1-3\">The wait is finally over \u2013 IETF has published TLS 1.3<\/h2>\n\n\n\n<p class=\"wp-block-paragraph\">UPDATE: While the IETF had approved TLS 1.3, it still hadn&#8217;t published it. That changed last Friday when the IETF finally published it as <a href=\"https:\/\/datatracker.ietf.org\/doc\/rfc8446\/\" target=\"_blank\" rel=\"nofollow noopener noreferrer\">RFC 8446<\/a>. Hopefully the new standard will be adopted much more quickly than TLS 1.2 was. That standard turns 10 years old next month, yet <a href=\"https:\/\/www.thesslstore.com\/blog\/new-pci-standards-require-abandoning-ssl-3-0-and-tls-1-0\/\" target=\"_blank\" rel=\"noopener noreferrer\">the Payment Card Industry only recently deprecated TLS 1.0<\/a> and some older legacy systems still use TLS 1.1.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Still, two of the biggest browsers in the world already support it. <a href=\"https:\/\/www.thesslstore.com\/blog\/security-changes-in-chrome-63\/\" target=\"_blank\" rel=\"noopener noreferrer\">Google added support months ago<\/a> and <a href=\"https:\/\/blog.mozilla.org\/security\/2018\/08\/13\/tls-1-3-published-in-firefox-today\/\" target=\"_blank\" rel=\"nofollow noopener noreferrer\">Mozilla announced its addition of TLS 1.3 support<\/a> to its Firefox browser on Monday. <span id=\"newline\"><\/span><\/p>\n\n\n\n<p class=\"wp-block-paragraph\">As Mozilla&#8217;s Eric Rescorla wrote:<\/p>\n\n\n\n<blockquote class=\"wp-block-quote is-layout-flow wp-block-quote-is-layout-flow\">\n<p class=\"wp-block-paragraph\">TLS 1.3 is already widely deployed: both Firefox and Chrome have fielded \u201cdraft\u201d versions. Firefox 61 is already shipping draft-28, which is essentially the same as the final published version (just with a different version number). We expect to ship the final version in Firefox 63, scheduled for October 2018. Cloudflare, Google, and Facebook are running it on their servers today. Our telemetry shows that around 5% of Firefox connections are TLS 1.3. Cloudflare reports similar numbers, and Facebook <a href=\"https:\/\/code.fb.com\/networking-traffic\/deploying-tls-1-3-at-scale-with-fizz-a-performant-open-source-tls-library\/\" target=\"_blank\" rel=\"noopener noreferrer\">reports<\/a> that an astounding 50+% of their traffic is already TLS 1.3!<\/p>\n<\/blockquote>\n\n\n\n<p class=\"wp-block-paragraph\">While some of the biggest sites on the internet have already updated their servers, the proliferation of the new standard will likely only be as fast as other sites add support server-side.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><em>The following post originally ran on April 4th when the standard was first finalized as draft 28. The same version Firefox is adding support for. It has <\/em>been updates<em> to reflect any changes to the published standard.<\/em><\/p>\n\n\n<span style=\"--tl-form-height-m:150.25px;--tl-form-height-t:121.4583px;--tl-form-height-d:121.4583px;\" class=\"tl-placeholder-f-type-shortcode_12753 tl-preload-form\"><span><\/span><\/span>\n\n\n\n<h2 class=\"wp-block-heading\" id=\"h-tls-1-3-was-finalized-in-april\">TLS 1.3 was finalized in April<\/h2>\n\n\n\n<p class=\"wp-block-paragraph\">After four years, 28 drafts, tons of middleboxes, and some <a href=\"https:\/\/www.thesslstore.com\/blog\/tls-1-3-banking-industry-working-undermine-encryption\/\" target=\"_blank\" rel=\"noopener noreferrer\">last-minute guest-appearances<\/a>; the road to making TLS 1.3 a web standard was nothing less than a soap opera. But finally, the IETF (Internet Engineering Task Force) has given its approval to the new standard.<\/p>\n\n\n<div class=\"wp-block-image\">\n<figure class=\"alignright\"><img loading=\"lazy\" decoding=\"async\" width=\"300\" height=\"160\" src=\"https:\/\/www.thesslstore.com\/blog\/wp-content\/uploads\/2018\/08\/IETF_Logo.svg-300x160.png\" alt=\"TLS 1.3\" class=\"wp-image-7080\" srcset=\"https:\/\/www.thesslstore.com\/blog\/wp-content\/uploads\/2018\/08\/IETF_Logo.svg-300x160.png 300w, https:\/\/www.thesslstore.com\/blog\/wp-content\/uploads\/2018\/08\/IETF_Logo.svg-768x410.png 768w, https:\/\/www.thesslstore.com\/blog\/wp-content\/uploads\/2018\/08\/IETF_Logo.svg-1024x546.png 1024w, https:\/\/www.thesslstore.com\/blog\/wp-content\/uploads\/2018\/08\/IETF_Logo.svg-940x500.png 940w, https:\/\/www.thesslstore.com\/blog\/wp-content\/uploads\/2018\/08\/IETF_Logo.svg.png 1200w\" sizes=\"auto, (max-width: 300px) 100vw, 300px\" \/><\/figure>\n<\/div>\n\n\n<p class=\"wp-block-paragraph\">It was approved in the task force\u2019s meeting in London last week (Spring &#8217;18). Many weren\u2019t expecting TLS 1.3 to get approved considering the last-minute &#8220;<a href=\"https:\/\/www.thesslstore.com\/blog\/tls-1-3-banking-industry-working-undermine-encryption\/\" target=\"_blank\" rel=\"noopener noreferrer\">concerns<\/a>&#8221; raised by the banking industry as well as some other groups. But, ignoring those calls, the IETF passed the 28<sup>th<\/sup> draft of TLS 1.3, anyway. [<strong>Update:<\/strong> <em>The new standard was published as RFC 8446 on 8\/10\/18<\/em>]<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">It is no surprise that the pro-security community is rejoicing at the moment. Why wouldn\u2019t they? After all, TLS 1.3 brings a host of security and performance advancements.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\" id=\"h-tls-1-3-passed-with-unprecedented-support\">TLS 1.3 Passed with Unprecedented Support<\/h2>\n\n\n\n<p class=\"wp-block-paragraph\">To get the new standard approved, it had to be passed by the Internet Engineering Steering Group (IESG), a wing of IETF. In the words of Adam Roach, a principal engineer at Mozilla, the level of support for 1.3 in the IESG was \u201cunusually high.\u201d Out of the thirteen members who voted, eight members voted in favor of it while five opted for \u2018no objection.\u2019<\/p>\n\n\n\n<blockquote class=\"wp-block-quote is-layout-flow wp-block-quote-is-layout-flow\">\n<p class=\"wp-block-paragraph\">TLS 1.3 is designed in cooperation with the academic security community and has benefitted from an extraordinary level of review and analysis. &nbsp;This included formal verification of the security properties by multiple independent groups; the TLS 1.3 RFC cites 14 separate papers analyzing the security of <a href=\"https:\/\/tools.ietf.org\/html\/rfc8446#appendix-E.1.6\" target=\"_blank\" rel=\"nofollow noopener noreferrer\">various<\/a> <a href=\"https:\/\/tools.ietf.org\/html\/rfc8446#appendix-E.2.1\" target=\"_blank\" rel=\"nofollow noopener noreferrer\">aspects<\/a> of the protocol.<\/p>\n<\/blockquote>\n\n\n\n<p class=\"wp-block-paragraph\">Beyond the review and analysis, 1.3 was also tested extensively to ensure the standard can be used for as long as possible. <a href=\"https:\/\/www.ietf.org\/blog\/tls13\/\" target=\"_blank\" rel=\"nofollow noopener noreferrer\">As the IETF reports<\/a>:<\/p>\n\n\n\n<blockquote class=\"wp-block-quote is-layout-flow wp-block-quote-is-layout-flow\">\n<p class=\"wp-block-paragraph\">TLS 1.3 was a primary focus of the IETF 98 Hackathon project that brought together people who work on web browsers, websites, and the Internet of Things. This collaboration helps demonstrate interoperability, catch documentation and implementation bugs, and ultimately ensure the specification provides a solid reference for others looking to implement TLS 1.3.<\/p>\n<\/blockquote>\n\n\n\n<p class=\"wp-block-paragraph\">Here&#8217;s a quick video courtesy of the IETF:<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><iframe loading=\"lazy\" src=\"https:\/\/www.youtube.com\/embed\/HFzXrqw-UpI\" width=\"560\" height=\"315\" frameborder=\"0\" allowfullscreen=\"allowfullscreen\"><\/iframe><\/p>\n\n\n\n<h2 class=\"wp-block-heading\" id=\"h-what-is-tls-1-3\">What is TLS 1.3?<\/h2>\n\n\n\n<p class=\"wp-block-paragraph\">To understand TLS 1.3, you must first understand what TLS (Transport Layer Security) is.<\/p>\n\n\n<div class=\"wp-block-image\">\n<figure class=\"alignleft\"><img loading=\"lazy\" decoding=\"async\" width=\"300\" height=\"231\" src=\"https:\/\/www.thesslstore.com\/blog\/wp-content\/uploads\/2018\/08\/tls-1.3-introduction-from-rapidsslonline-350x270-300x231.jpg\" alt=\"TLS 1.3\" class=\"wp-image-7079\" srcset=\"https:\/\/www.thesslstore.com\/blog\/wp-content\/uploads\/2018\/08\/tls-1.3-introduction-from-rapidsslonline-350x270-300x231.jpg 300w, https:\/\/www.thesslstore.com\/blog\/wp-content\/uploads\/2018\/08\/tls-1.3-introduction-from-rapidsslonline-350x270.jpg 350w\" sizes=\"auto, (max-width: 300px) 100vw, 300px\" \/><\/figure>\n<\/div>\n\n\n<p class=\"wp-block-paragraph\">While browsing on the internet, you may have noticed that the URLs of some sites start with HTTPS while others have HTTP in front of them. You may have even wondered about the difference between them. Well, as you can see superficially, \u2018S\u2019 is the difference here. This \u2018S\u2019 stands for secure. It means that your connection to the HTTPS site is secured and every bit of information transmitted between the client and the server gets encrypted.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">So, how can you get your website secured?<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">To get a site secured, you need to install SSL\/TLS certificates. These certificates, through various mechanisms, facilitate encryption of in-transit information, thereby thwarting any data theft or tampering. The encryption is carried out by cryptographic protocols. These protocols comprise of algorithms and ciphers that are responsible for data encryption.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">TLS 1.3 is the fourth version of the TLS family. It brings a host of advancements when compared to TLS 1.2, the incumbent cryptographic protocol.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\" id=\"h-tls-1-3-security-improvements\">TLS 1.3: Security Improvements<\/h2>\n\n\n\n<p class=\"wp-block-paragraph\">Vulnerabilities such as POODLE and Heartbleed, and the recently discovered <a href=\"https:\/\/www.thesslstore.com\/blog\/robot-attack-says-past-doesnt-hurt\/\" target=\"_blank\" rel=\"noopener noreferrer\">ROBOT<\/a> attack have shown us how vulnerabilities left unfixed could affect millions of users around the world. TLS 1.3, ditches the insecurities present in TLS 1.2.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">TLS 1.2, the latest TLS standard, consists of insecure protocols, ciphers, and algorithms. However, you don&#8217;t need to be concerned about it as there is very slim chance you will get attacked. But it doesn&#8217;t mean that it can&#8217;t be exploited. Attackers can capitalize on these insecure parts of TLS 1.2 and perform a downgrade attack. TLS 1.3 eliminates this possibility by phasing out these obsolete ciphers and protocols while bringing in secure replacements.<\/p>\n\n\n<div class=\"wp-block-image\">\n<figure class=\"alignright\"><img loading=\"lazy\" decoding=\"async\" width=\"300\" height=\"300\" src=\"https:\/\/www.thesslstore.com\/blog\/wp-content\/uploads\/2018\/08\/bigstock-195032344-300x300.jpg\" alt=\"Private Key, TLS 1.3\" class=\"wp-image-7078\" srcset=\"https:\/\/www.thesslstore.com\/blog\/wp-content\/uploads\/2018\/08\/bigstock-195032344-300x300.jpg 300w, https:\/\/www.thesslstore.com\/blog\/wp-content\/uploads\/2018\/08\/bigstock-195032344-768x768.jpg 768w, https:\/\/www.thesslstore.com\/blog\/wp-content\/uploads\/2018\/08\/bigstock-195032344-1024x1024.jpg 1024w, https:\/\/www.thesslstore.com\/blog\/wp-content\/uploads\/2018\/08\/bigstock-195032344.jpg 1600w\" sizes=\"auto, (max-width: 300px) 100vw, 300px\" \/><\/figure>\n<\/div>\n\n\n<p class=\"wp-block-paragraph\">Here are some of the ciphers and algorithms discontinued in TLS 1.3:<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>RC4 Steam Cipher<\/li>\n\n\n\n<li>RSA Key Transport<\/li>\n\n\n\n<li>SHA-1 Hash Function<\/li>\n\n\n\n<li>CBC Mode Ciphers<\/li>\n\n\n\n<li>MD5 Algorithm<\/li>\n\n\n\n<li>Various Diffie-Hellman groups<\/li>\n\n\n\n<li>EXPORT-strength ciphers<\/li>\n\n\n\n<li>DES<\/li>\n\n\n\n<li>3DES<\/li>\n<\/ul>\n\n\n<span style=\"--tl-form-height-m:861.156px;--tl-form-height-t:899.625px;--tl-form-height-d:899.625px;\" class=\"tl-placeholder-f-type-shortcode_12653 tl-preload-form\"><span><\/span><\/span>\n\n\n<h2 class=\"wp-block-heading\" id=\"h-improved-ssl-tls-handshake\">Improved SSL\/TLS Handshake<\/h2>\n\n\n\n<p class=\"wp-block-paragraph\">The second major thing that sets TLS 1.3 apart from its predecessors is its upgraded version of the SSL\/TLS handshake. Before a secure connection is established between the client and the server, a handshake process is carried out between both the parties. This handshake involves a series of back-and-forth communication steps between the client and the server to validate each other\u2019s and negotiate the terms of the data transfer.<\/p>\n\n\n\n<blockquote class=\"wp-block-quote is-layout-flow wp-block-quote-is-layout-flow\">\n<p class=\"wp-block-paragraph\">&#8220;In previous <a href=\"https:\/\/www.thesslstore.com\/blog\/ssl-and-tls-versions-celebrating-30-years-of-history\/\">versions of TLS<\/a>, the entire handshake was in the clear which leaked a lot of information, including both the client and server\u2019s identities. In addition, many network middleboxes used this information to enforce network policies and failed if the information wasn\u2019t where they expected it,&#8221; writes Rescorla. &#8220;This can lead to breakage when new protocol features are introduced. TLS 1.3 encrypts most of the handshake, which provides better privacy and also gives us more freedom to evolve the protocol in the future.&#8221;<\/p>\n<\/blockquote>\n\n\n\n<p class=\"wp-block-paragraph\">It also streamlines the process, which means better performance. TLS 1.2 along with 1.1 and 1.0, facilitated the handshake by virtue of two round-trips of communication between the client and the server. In technical terms, this is called \u20182-RTT\u2019 handshake.<\/p>\n\n\n<div class=\"wp-block-image\">\n<figure class=\"alignright\"><img loading=\"lazy\" decoding=\"async\" width=\"2789\" height=\"3183\" src=\"https:\/\/www.thesslstore.com\/blog\/wp-content\/uploads\/2017\/01\/SSL_Handshake_10-Steps-1.png\" alt=\"TLS 1.2 Handshake; TLS 1.3 handshake\" class=\"wp-image-3366\" srcset=\"https:\/\/www.thesslstore.com\/blog\/wp-content\/uploads\/2017\/01\/SSL_Handshake_10-Steps-1.png 2789w, https:\/\/www.thesslstore.com\/blog\/wp-content\/uploads\/2017\/01\/SSL_Handshake_10-Steps-1-263x300.png 263w, https:\/\/www.thesslstore.com\/blog\/wp-content\/uploads\/2017\/01\/SSL_Handshake_10-Steps-1-768x876.png 768w, https:\/\/www.thesslstore.com\/blog\/wp-content\/uploads\/2017\/01\/SSL_Handshake_10-Steps-1-897x1024.png 897w\" sizes=\"auto, (max-width: 2789px) 100vw, 2789px\" \/><\/figure>\n<\/div>\n\n\n<p class=\"wp-block-paragraph\">These two round-trips result in much higher TTFB (time to first byte). It takes somewhere between 0.25 to 0.5 seconds to execute the handshake. Time of half a second might not seem like a big deal but keep in mind that this is just the handshake \u2013 a process before data transfer takes place. In areas such as stock trading where connection speed is of paramount importance, half a second could make a massive impact.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">TLS 1.3, with its improvised handshake, takes an entire round-trip out of the equation. This way, only a single round-trip is needed to complete the SSL\/TLS handshake. Correspondingly, the handshake time is reduced drastically.<\/p>\n\n\n<div class=\"wp-block-image\">\n<figure class=\"alignright\"><img loading=\"lazy\" decoding=\"async\" width=\"1000\" height=\"374\" src=\"https:\/\/www.thesslstore.com\/blog\/wp-content\/uploads\/2018\/03\/TLS_1_3_Handshake.jpg\" alt=\"TLS 1.3 Handshake\" class=\"wp-image-6088\" srcset=\"https:\/\/www.thesslstore.com\/blog\/wp-content\/uploads\/2018\/03\/TLS_1_3_Handshake.jpg 1000w, https:\/\/www.thesslstore.com\/blog\/wp-content\/uploads\/2018\/03\/TLS_1_3_Handshake-300x112.jpg 300w, https:\/\/www.thesslstore.com\/blog\/wp-content\/uploads\/2018\/03\/TLS_1_3_Handshake-768x287.jpg 768w\" sizes=\"auto, (max-width: 1000px) 100vw, 1000px\" \/><\/figure>\n<\/div>\n\n\n<p class=\"wp-block-paragraph\">However, this isn\u2019t where the advancement stops. TLS 1.3 also enables 0-RTT handshakes between the clients and servers that have met before. It means that it\u2019ll require zero round trips to get the handshake done. This results in significant latency improvement.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><a href=\"https:\/\/www.thesslstore.com\/blog\/tls-1-3-handshake-tls-1-2\/\" target=\"_blank\" rel=\"noopener noreferrer\">If you want to take a closer look at the TLS 1.3 handshake process, click here.<\/a><\/p>\n\n\n\n<h2 class=\"wp-block-heading\" id=\"h-ietf-says-no-to-tls-1-3-backdoor\">IETF says NO to TLS 1.3 backdoor<\/h2>\n\n\n\n<p class=\"wp-block-paragraph\">The banking industry led by BITS, the technology policy division of the financial services roundtable, appeared out of nowhere at the last-minute. They asked for \u201can option for negotiation of visibility in the datacenter.\u201d In other words, they were asking for a backdoor.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">This demand was laughed off by experts when the news came out, and the IETF was widely expected to ignore it. And that\u2019s exactly what happened. As reported by The Register, \u201cAn effort to effectively insert a backdoor into the protocol was met with disdain and some anger by internet engineers.\u201d<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">This was pretty much expected. Backdoor in the protocol that is the foundation of web security? Are you kidding me? There was no way the IETF would have allowed a backdoor in the TLS 1.3 and the vote count vouches for it. The IETF members voted unanimously against having a backdoor. I\u2019m sure they would\u2019ve voted with a big grin on their faces.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\" id=\"h-how-do-i-enable-tls-1-3\">How do I enable TLS 1.3?<\/h2>\n\n\n\n<p class=\"wp-block-paragraph\">Google Chrome, the most vastly used browser on the planet, just rolled out support for TLS 1.3 (Draft 23) with the launch of Chrome 65. [Update: Firefox has added support, too] Although this is just the draft, you can still experience TLS 1.3 on the sites that have enabled support for TLS 1.3. Firefox too has enabled TLS 1.3 for its users. Let\u2019s see how you can use TLS 1.3.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\" id=\"h-enable-tls-1-3-in-chrome\">Enable TLS 1.3 in Chrome<\/h2>\n\n\n\n<ul class=\"wp-block-list\">\n<li>First, search for <strong>chrome:\/\/flags\/ <\/strong>in the address bar and hit enter<\/li>\n\n\n\n<li>Now go to <strong>TLS 1.3&nbsp;<\/strong>and select enable TLS 1.3 (draft 23)<\/li>\n\n\n\n<li>Relaunch your Chrome<\/li>\n\n\n\n<li>Go to <a href=\"https:\/\/istlsfastyet.com\/\" target=\"_blank\" rel=\"nofollow noopener noreferrer\">https:\/\/istlsfastyet.com\/<\/a><\/li>\n\n\n\n<li>Now press F12 and go to the <strong>Security <\/strong>tab<\/li>\n\n\n\n<li>Reload the website<\/li>\n\n\n\n<li>Click on the link listed under <strong>Main origin<\/strong><\/li>\n<\/ul>\n\n\n\n<p class=\"wp-block-paragraph\">There you have it. As you can see, your connection to the website is protected through TLS 1.3.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\" id=\"h-enable-tls-1-3-in-firefox\">Enable TLS 1.3 in Firefox<\/h2>\n\n\n\n<ul class=\"wp-block-list\">\n<li>Search for <strong>about:config <\/strong>in the address bar and press enter<\/li>\n\n\n\n<li>In the search space, search for <strong>tls.version.max<\/strong><\/li>\n\n\n\n<li>Now change the value from 3 to 4<\/li>\n\n\n\n<li>Restart your Firefox<\/li>\n\n\n\n<li>Go to <a href=\"https:\/\/istlsfastyet.com\/\" target=\"_blank\" rel=\"nofollow noopener noreferrer\">https:\/\/istlsfastyet.com\/<\/a><\/li>\n\n\n\n<li>Click on the padlock in the URL bar<\/li>\n\n\n\n<li>Now you should see a small pop-up citing the connection to be secure. Click on the <strong>&gt; <\/strong>that you see and then click on <strong>More Information<\/strong><\/li>\n\n\n\n<li>A window with certificate details will open up. See the technical details at the bottom of it, you\u2019ll see <strong>TLS 1.3 <\/strong>being the security protocol.<\/li>\n<\/ul>\n\n\n\n<p class=\"wp-block-paragraph\"><em><span style=\"color:#F07725\" class=\"color\">This article has been updated several times to reflect the most accurate information. Jay Thakkar contributed to its writing.<\/span><\/em><\/p>\n","protected":false},"excerpt":{"rendered":"<p>The wait is finally over \u2013 IETF has published TLS 1.3 UPDATE: While the IETF had approved TLS 1.3, it still hadn&#8217;t published it. That changed last Friday when the&#8230;<\/p>\n","protected":false},"author":6,"featured_media":6203,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"inline_featured_image":false,"footnotes":"","tve_updated_post":"","tve_custom_css":"","tve_user_custom_css":"","tve_globals":{},"tcb2_ready":0,"tcb_editor_enabled":0,"tve_landing_page":"","_tve_header":"","_tve_footer":""},"categories":[130],"tags":[214],"class_list":["post-6202","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-everything-encryption","tag-tls-1-3","post-with-tags"],"views":106140,"jetpack_featured_media_url":"https:\/\/www.thesslstore.com\/blog\/wp-content\/uploads\/2018\/04\/bigstock-Double-Exposure-Of-Professiona-180722050.jpg","_links":{"self":[{"href":"https:\/\/www.thesslstore.com\/blog\/wp-json\/wp\/v2\/posts\/6202","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.thesslstore.com\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.thesslstore.com\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.thesslstore.com\/blog\/wp-json\/wp\/v2\/users\/6"}],"replies":[{"embeddable":true,"href":"https:\/\/www.thesslstore.com\/blog\/wp-json\/wp\/v2\/comments?post=6202"}],"version-history":[{"count":0,"href":"https:\/\/www.thesslstore.com\/blog\/wp-json\/wp\/v2\/posts\/6202\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.thesslstore.com\/blog\/wp-json\/wp\/v2\/media\/6203"}],"wp:attachment":[{"href":"https:\/\/www.thesslstore.com\/blog\/wp-json\/wp\/v2\/media?parent=6202"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.thesslstore.com\/blog\/wp-json\/wp\/v2\/categories?post=6202"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.thesslstore.com\/blog\/wp-json\/wp\/v2\/tags?post=6202"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}