Learning paths / Cloud foundations / TLS and certificates

Check: TLS

Knowledge check · 5 min · Module 7, lesson 4 of 45 min left in this module

Module 7 · TLS and certificatesLesson 4 of 4

Goal: Confirm you can say what HTTPS protects, read a certificate, and diagnose a certificate error.

Four questions: three on this module, one on Module 5. Every answer explains itself, right or wrong.

Someone on your network watches you use https://mail.example.com. What can they read?
Your site's certificate lists example.com only. Visitors to www.example.com get an error. Which one?
Why does a browser trust a certificate it has never seen before?
From Module 5: you point app.example.com at a new server, but some visitors still reach the old one an hour later. The record's TTL was 86400. Why?

Retry as often as you like.

Before you go, name each part.

TLS at a glance: from memory

Name each part before you reveal it.

Keeps traffic private and untampered.
Agrees keys in one round trip.
Proves which names the server holds.
Vouches for certificates your device trusts.
Four parts make HTTPS work.