[prev in list] [next in list] [prev in thread] [next in thread]
List: ietf-tls
Subject: [TLS] I-D Action: draft-ietf-tls-oob-pubkey-02.txt
From: internet-drafts () ietf ! org
Date: 2012-03-11 21:35:33
Message-ID: 20120311213533.28900.30345.idtracker () ietfa ! amsl ! com
[Download RAW message or body]
A New Internet-Draft is available from the on-line Internet-Drafts director=
ies. This draft is a work item of the Transport Layer Security Working Grou=
p of the IETF.
Title : TLS Out-of-Band Public Key Validation
Author(s) : Paul Wouters
John Gilmore
Samuel Weiler
Tero Kivinen
Hannes Tschofenig
Filename : draft-ietf-tls-oob-pubkey-02.txt
Pages : 10
Date : 2012-03-11
This document specifies a new TLS certificate type for exchanging raw
public keys in Transport Layer Security (TLS) and Datagram Transport
Layer Security (DTLS) for use with out-of-band public key validation.
Currently, TLS authentication can only occur via X.509-based Public
Key Infrastructure (PKI) or OpenPGP certificates. By specifying a
minimum resource for raw public key exchange, implementations can use
alternative public key validation methods.
One such alternative public key valiation method is offered by the
DNS-Based Authentication of Named Entities (DANE) together with DNS
Security. Another alternative is to utilize pre-configured keys, as
is the case with sensors and other embedded devices. The usage of
raw public keys, instead of X.509-based certificates, leads to a
smaller code footprint.
The support for raw public keys is introduced into TLS via a new non-
PKIX certificate type.
A URL for this Internet-Draft is:
http://www.ietf.org/internet-drafts/draft-ietf-tls-oob-pubkey-02.txt
Internet-Drafts are also available by anonymous FTP at:
ftp://ftp.ietf.org/internet-drafts/
This Internet-Draft can be retrieved at:
ftp://ftp.ietf.org/internet-drafts/draft-ietf-tls-oob-pubkey-02.txt
[prev in list] [next in list] [prev in thread] [next in thread]
Configure |
About |
News |
Add a list |
Sponsored by KoreLogic