...
One way SSL is enabled by default.
Two way SSL needs self-signed or CA-signed certificates
For the exam only, not reality now with many different options available…
Apex code ignores profile based security.
Can respect or ignore record level security.
TLS
Transport Layer Security
You upload your certificate to Salesforce
You can download salesforce client certificate to authenticate on your web server.