A TLS certificate is a small file that proves a website or server really is who it says it is, and lets your connection to it be encrypted so others cannot read the traffic. TLS is the technology behind the padlock in your browser.

These posts cover working with TLS certificates day to day: how the trust chain fits together, running your own certificate authority, using ACME and Let’s Encrypt to get certificates for free, renewing them automatically, and fixing common certificate errors.