Inspect SSL/TLS certificates, verify CA issuers, validity dates, SAN extensions, and cipher protocols.