Data Rooms Providers Find a data room
VDR glossary · Security

What is Transport Layer Security (TLS)?

Definition

Transport Layer Security (TLS): The standard protocol that encrypts and authenticates connections between browsers and servers; it is what puts the padlock in the address bar when you open a data room.

How it works in a data room

Before any document moves, the browser and server run a handshake. The server proves its identity with a certificate, both sides agree on a cipher suite, and they derive session keys that encrypt everything that follows. TLS 1.3, defined in RFC 8446, shortens that handshake and removes older, weaker options; TLS 1.2 remains acceptable when configured carefully. Versions 1.0 and 1.1 are deprecated and a provider still accepting them is a warning sign. TLS is the mechanism behind encryption in transit, and it also guards the provider’s mobile apps and API.

Why it matters in a deal

A data room is only as private as the weakest connection into it. Certificate errors, expired certificates or legacy protocol support give attackers room to intercept or impersonate the login page, which is exactly where credentials are typed. Because a TLS configuration can be tested from outside by anyone, a buyer’s security team will often check it before anyone asks for a call. Findings from a provider’s penetration testing should also cover it.

Example

A family office in Singapore is invited into a seller’s room for a logistics business. Its outsourced IT firm scans the room’s login domain and notices that the certificate chain is valid and only modern protocol versions respond. That five-minute check clears the way for the partners to log in from their own laptops. The Singapore guide lists what local regulators expect from service providers holding client data.

Related terms