๐ŸŽฏ New! Master certifications with Performance-Based Questions (PBQ) โ€” realistic hands-on practice for CompTIA & Cisco exams!

๐Ÿ›ก๏ธ

Security Protocols Cheat Sheet

SSL/TLS versions, IPsec, SSH, and VPN protocols

Protocol Year Status Port Use Case Notes
SSL 2.01995Deprecated443Legacy HTTPS (insecure)Vulnerable, never use
SSL 3.01996Deprecated443Legacy HTTPS (insecure)POODLE vulnerability
TLS 1.01999Deprecated443Legacy web encryptionBEAST vulnerability, avoid
TLS 1.12006Deprecated443TransitionalNo longer considered secure
TLS 1.22008Active443Standard web encryptionWidely supported, secure
TLS 1.32018Recommended443Modern web encryptionFastest, most secure, 1-RTT
IPsec1995Active500/4500VPN tunnels, site-to-siteAH (auth) + ESP (encrypt)
IKEv11998Legacy500IPsec key exchangeReplaced by IKEv2
IKEv22005Active500/4500IPsec key exchangeFaster, NAT traversal
SSH1995Active22Secure remote accessReplaces Telnet
SFTP1997Active22Secure file transferRuns over SSH tunnel
FTPS1996Active990FTP over TLSImplicit (990) or Explicit (21)
HTTPS1994Active443Secure web browsingHTTP + TLS encryption
LDAPS1997Active636Secure directory accessLDAP over SSL/TLS
SNMPv32002Active161/162Secure network managementAuth + encryption, use this
DNSSEC2005Active53DNS integrity verificationPrevents DNS spoofing
DoH2018Active443DNS over HTTPSPrivacy-focused DNS
DoT2016Active853DNS over TLSEncrypted DNS queries
WireGuard2020Active51820Modern VPN protocolFast, minimal code
OpenVPN2001Active1194VPN tunnelingFlexible, widely used

โš ๏ธ Deprecated Protocols

SSL 2.0, SSL 3.0, TLS 1.0, and TLS 1.1 are all deprecated. Use TLS 1.2 minimum, prefer TLS 1.3.