Concept Flow - Certificate authorities and trust chains
User requests secure website
Website sends its certificate
User's device checks certificate issuer
Is issuer trusted?
No→Reject connection
Yes
Check issuer's certificate (CA)
Repeat trust check up to root CA
Root CA is trusted?
No→Reject connection
Yes
Connection is secure and trusted
This flow shows how a user's device verifies a website's certificate by checking each issuer up to a trusted root certificate authority.