Server authentication: The server is authenticated
to the client by demonstrating possession of a digital certificate. This
proves to the originator that he or she is actually communicating with
the intended Web site and not a site that is posing as that Web site to
fraudulently gather credit card or personal information.
Client authentication: This service authenticates to the server that the
client is who he or she claims to be, protecting the business from fraudulent
users and over non repudiation protection.
Integrity: Data items transferred are protected against attempts to modify
data.
Confidentiality: Users are assured that no unauthorized entity has access
to the information being shared at the Web site. This protects sensitive
information such as account numbers or credit card numbers against eavesdroppers.