rfc.dk

Security area

806 RFCs published in the Security area (sec), newest first

RFCTitleStatusDate
10042Post-Quantum/Traditional Hybrid Key Exchange with the Module-Lattice-Based Key-Encapsulation Mechanism for Use in SSHP. Kampanakis, D. Stebila, T. HansenInformationalAugust 2026
10031Media Access Control (MAC) Addresses in X.509 CertificatesR. Housley, C. Bonnell, J. Mandel, T. Okubo, M. StJohnsProposed StandardAugust 2026
10027Best Current Practice for Security of Cross-Device FlowsP. Kasselman, D. Fett, F. SkokanBest Current PracticeAugust 2026
10024Post-Quantum Traditional (PQ/T) Hybrid Key Agreement Mechanisms for TLS 1.3K. Kwiatkowski, P. Kampanakis, B. E. Westerbaan, D. StebilaProposed StandardAugust 2026
10017OAuth 2.0 for Browser-Based ApplicationsA. Parecki, P. De Ryck, D. WaiteBest Current PracticeAugust 2026
10015Deprecating Obsolete Key Exchange Methods in TLS 1.2 and DTLS 1.2N. AviramProposed StandardJuly 2026
10013Entity Attestation Token (EAT) Measured ComponentS. Frost, T. Fossati, H. Tschofenig, H. BirkholzProposed StandardJuly 2026
10007Clarification to Processing Key Usage Values During Certificate Revocation List (CRL) ValidationC. Bonnell, T. Ito, T. OkuboProposed StandardJune 2026
10004Certificate Management over CMS (CMC): Compliance RequirementsJ. Mandel, Ed., S. Turner, Ed.Proposed StandardJuly 2026
10003Certificate Management over CMS (CMC): Transport ProtocolsJ. Mandel, Ed., S. Turner, Ed.Proposed StandardJuly 2026
10002Certificate Management over CMS (CMC)J. Mandel, Ed., S. Turner, Ed.Proposed StandardJuly 2026
9999Remote ATtestation procedureS (RATS) Conceptual Message Wrapper (CMW)H. Birkholz, N. Smith, T. Fossati, H. TschofenigProposed StandardJuly 2026
9995CBOR Object Signing and Encryption (COSE) Hash EnvelopeO. Steele, S. Lasker, H. BirkholzProposed StandardJuly 2026
9987Secure Shell (SSH) Agent ProtocolD. MillerProposed StandardMay 2026
9980Post-Quantum Cryptography in OpenPGPS. Kousidis, J. Roth, F. Strenzke, A. WusslerProposed StandardJune 2026
9973TLS 1.3 Extension for Using Certificates with an External Pre-Shared KeyR. HousleyProposed StandardJuly 2026
9967System for Cross-Domain Identity Management (SCIM) Profile for Security Event Tokens (SETs)P. Hunt, Ed., N. Cam-Winget, M. Kiser, J. SchreiberProposed StandardMay 2026
9966Bootstrapped TLS Authentication with Proof of KnowledgeO. Friel, D. HarkinsProposed StandardMay 2026
9965The eap.arpa. Domain and Extensible Authentication Protocol (EAP) ProvisioningA. DeKokProposed StandardMay 2026
9964ML-DSA for JSON Object Signing and Encryption (JOSE) and CBOR Object Signing and Encryption (COSE)M. Prorock, O. SteeleProposed StandardMay 2026
9963Legacy RSASSA-PKCS1-v1_5 Code Points for TLS 1.3D. Benjamin, A. PopovProposed StandardApril 2026
9958Post-Quantum Cryptography for EngineersA. Banerjee, T. Reddy.K, D. Schoinianakis, T. Hollebeek, M. OunsworthInformationalJune 2026
9955Hybrid Signature SpectrumsN. Bindel, B. Hale, D. Connolly, F. DriscollInformationalJuly 2026
9954Hybrid Key Exchange in TLS 1.3D. Stebila, S. Fluhrer, S. GueronInformationalJuly 2026
9944Device Schema Extensions to the System for Cross-Domain Identity Management (SCIM) ModelM. Shahzad, H. Iqbal, E. LearProposed StandardMay 2026
9943An Architecture for Trustworthy and Transparent Digital Supply ChainsH. Birkholz, A. Delignat-Lavaud, C. Fournet, Y. Deshpande, S. LaskerProposed StandardJune 2026
9942CBOR Object Signing and Encryption (COSE) ReceiptsO. Steele, H. Birkholz, A. Delignat-Lavaud, C. FournetProposed StandardJune 2026
9941Secure Shell (SSH) Key Exchange Method Using Hybrid Streamlined NTRU Prime sntrup761 and X25519 with SHA-512: sntrup761x25519-sha512M. Friedl, J. Mojzis, S. JosefssonInformationalApril 2026
9939PKCS #8: Private-Key Information Content TypesJ. Mandel, R. Housley, S. TurnerProposed StandardFebruary 2026
9936Use of ML-KEM in the Cryptographic Message Syntax (CMS)J. Prat, M. Ounsworth, D. Van GeestProposed StandardMarch 2026
9935Internet X.509 Public Key Infrastructure - Algorithm Identifiers for the Module-Lattice-Based Key-Encapsulation Mechanism (ML-KEM)S. Turner, P. Kampanakis, J. Massimo, B. E. WesterbaanProposed StandardMarch 2026
9930Tunnel Extensible Authentication Protocol (TEAP) Version 1A. DeKok, Ed.Proposed StandardFebruary 2026
9925Unsigned X.509 CertificatesD. BenjaminProposed StandardFebruary 2026
9921CBOR Object Signing and Encryption (COSE) Header Parameter for Timestamp Tokens as Defined in RFC 3161H. Birkholz, T. Fossati, M. RiechertProposed StandardFebruary 2026
9919The Lightweight Online Certificate Status Protocol (OCSP) Profile for High-Volume EnvironmentsT. Ito, C. Wilson, C. Bonnell, S. TurnerProposed StandardJuly 2026
9909Internet X.509 Public Key Infrastructure -- Algorithm Identifiers for the Stateless Hash-Based Digital Signature Algorithm (SLH-DSA)K. Bashiri, S. Fluhrer, S. Gazdag, D. Van Geest, S. KousidisProposed StandardDecember 2025
9908Clarification and Enhancement of the CSR Attributes Definition in RFC 7030M. Richardson, Ed., O. Friel, D. von Oheimb, D. HarkinsProposed StandardJanuary 2026
9901Selective Disclosure for JSON Web TokensD. Fett, K. Yasuda, B. CampbellProposed StandardNovember 2025
9891Automated Certificate Management Environment (ACME) Delay-Tolerant Networking (DTN) Node ID Validation ExtensionB. SiposExperimentalNovember 2025
9883An Attribute for Statement of Possession of a Private KeyR. HousleyProposed StandardOctober 2025
9882Use of the ML-DSA Signature Algorithm in the Cryptographic Message Syntax (CMS)B. Salter, A. Raine, D. Van GeestProposed StandardOctober 2025
9881Internet X.509 Public Key Infrastructure -- Algorithm Identifiers for the Module-Lattice-Based Digital Signature Algorithm (ML-DSA)J. Massimo, P. Kampanakis, S. Turner, B. E. WesterbaanProposed StandardOctober 2025
9879Use of Password-Based Message Authentication Code 1 (PBMAC1) in PKCS #12 SyntaxA. KarioInformationalSeptember 2025
9867Mixing Preshared Keys in the IKE_INTERMEDIATE and CREATE_CHILD_SA Exchanges of the Internet Key Exchange Protocol Version 2 (IKEv2) for Post-Quantum SecurityV. SmyslovProposed StandardNovember 2025
9865Cursor-Based Pagination of System of Cross-domain Identity Management (SCIM) ResourcesM. Peterson, Ed., D. Zollner, A. SehgalProposed StandardOctober 2025
9864Fully-Specified Algorithms for JSON Object Signing and Encryption (JOSE) and CBOR Object Signing and Encryption (COSE)M.B. Jones, O. SteeleProposed StandardOctober 2025
9853Return Routability Check for DTLS 1.2 and 1.3H. Tschofenig, Ed., A. Kraus, T. FossatiProposed StandardMarch 2026
9852New Protocols Using TLS Must Require TLS 1.3R. Salz, N. AviramBest Current PracticeJuly 2026
9851TLS 1.2 is in Feature FreezeR. Salz, N. AviramProposed StandardJuly 2026
9850The SSLKEYLOGFILE Format for TLSM. Thomson, Y. Rosomakho, H. TschofenigInformationalJuly 2026
9849TLS Encrypted Client HelloE. Rescorla, K. Oku, N. Sullivan, C. A. WoodProposed StandardMarch 2026
9848Bootstrapping TLS Encrypted ClientHello with DNS Service BindingsB. Schwartz, M. Bishop, E. NygrenProposed StandardMarch 2026
9847IANA Registry Updates for TLS and DTLSJ. Salowey, S. TurnerProposed StandardDecember 2025
9846The Transport Layer Security (TLS) Protocol Version 1.3E. RescorlaProposed StandardJuly 2026
9838Group Key Management Using the Internet Key Exchange Protocol Version 2 (IKEv2)V. Smyslov, B. WeisProposed StandardNovember 2025
9827Renaming the Extended Sequence Numbers (ESN) Transform Type in the Internet Key Exchange Protocol Version 2 (IKEv2)V. SmyslovProposed StandardNovember 2025
9820Authentication Service Based on the Extensible Authentication Protocol (EAP) for Use with the Constrained Application Protocol (CoAP)R. Marin-Lopez, D. Garcia-CarrilloProposed StandardSeptember 2025
9814Use of the SLH-DSA Signature Algorithm in the Cryptographic Message Syntax (CMS)R. Housley, S. Fluhrer, P. Kampanakis, B. WesterbaanProposed StandardJuly 2025
9813Operational Considerations for Using TLS Pre-Shared Keys (TLS-PSKs) with RADIUSA. DeKokBest Current PracticeJuly 2025
9811Internet X.509 Public Key Infrastructure -- HTTP Transfer for the Certificate Management Protocol (CMP)H. Brockhaus, D. von Oheimb, M. Ounsworth, J. GrayProposed StandardJuly 2025
9810Internet X.509 Public Key Infrastructure -- Certificate Management Protocol (CMP)H. Brockhaus, D. von Oheimb, M. Ounsworth, J. GrayProposed StandardJuly 2025
9809X.509 Certificate Extended Key Usage (EKU) for Configuration, Updates, and Safety-Critical CommunicationH. Brockhaus, D. GoltzscheProposed StandardJuly 2025
9802Use of the HSS and XMSS Hash-Based Signature Algorithms in Internet X.509 Public Key InfrastructureD. Van Geest, K. Bashiri, S. Fluhrer, S. Gazdag, S. KousidisProposed StandardJune 2025
9799Automated Certificate Management Environment (ACME) Extensions for ".onion" Special-Use Domain NamesQ Misell, Ed.Proposed StandardJune 2025
9794Terminology for Post-Quantum Traditional Hybrid SchemesF. Driscoll, M. Parsons, B. HaleInformationalJune 2025
9788Header Protection for Cryptographically Protected EmailD. K. Gillmor, B. Hoeneisen, A. MelnikovProposed StandardAugust 2025
9787Guidance on End-to-End Email SecurityD. K. Gillmor, Ed., A. Melnikov, Ed., B. Hoeneisen, Ed.InformationalAugust 2025
9782Entity Attestation Token (EAT) Media TypesL. Lundblade, H. Birkholz, T. FossatiProposed StandardMay 2025
9781A Concise Binary Object Representation (CBOR) Tag for Unprotected CBOR Web Token Claims Sets (UCCS)H. Birkholz, J. O'Donoghue, N. Cam-Winget, C. BormannProposed StandardMay 2025
9773ACME Renewal Information (ARI) ExtensionA. GableProposed StandardJune 2025
9770Notification of Revoked Access Tokens in the Authentication and Authorization for Constrained Environments (ACE) FrameworkM. Tiloca, F. Palombini, S. Echeverria, G. LewisProposed StandardJune 2025
9767Grant Negotiation and Authorization Protocol Resource Server ConnectionsJ. Richer, Ed., F. ImbaultProposed StandardApril 2025
9765RADIUS/1.1: Leveraging Application-Layer Protocol Negotiation (ALPN) to Remove MD5A. DeKokExperimentalApril 2025
9763Related Certificates for Use in Multiple Authentications within a ProtocolA. Becker, R. Guthrie, M. JenkinsProposed StandardJune 2025
9750The Messaging Layer Security (MLS) ArchitectureB. Beurdouche, E. Rescorla, E. Omara, S. Inguva, A. DuricInformationalApril 2025
9734X.509 Certificate Extended Key Usage (EKU) for Instant Messaging URIsR. MahyProposed StandardFebruary 2025
9728OAuth 2.0 Protected Resource MetadataM.B. Jones, P. Hunt, A. PareckiProposed StandardApril 2025
9711The Entity Attestation Token (EAT)L. Lundblade, G. Mandyam, J. O'Donoghue, C. WallaceProposed StandardApril 2025
9709Encryption Key Derivation in the Cryptographic Message Syntax (CMS) Using HKDF with SHA-256R. HousleyProposed StandardJanuary 2025
9708Use of the HSS/LMS Hash-Based Signature Algorithm in the Cryptographic Message Syntax (CMS)R. HousleyProposed StandardJanuary 2025
9701JSON Web Token (JWT) Response for OAuth Token IntrospectionT. Lodderstedt, Ed., V. DzhuvinovProposed StandardJanuary 2025
9700Best Current Practice for OAuth 2.0 SecurityT. Lodderstedt, J. Bradley, A. Labunets, D. FettBest Current PracticeJanuary 2025
9690Use of the RSA-KEM Algorithm in the Cryptographic Message Syntax (CMS)R. Housley, S. TurnerProposed StandardFebruary 2025
9688Use of the SHA3 One-Way Hash Functions in the Cryptographic Message Syntax (CMS)R. HousleyProposed StandardNovember 2024
9684A YANG Data Model for Challenge-Response-Based Remote Attestation (CHARRA) Procedures Using Trusted Platform Modules (TPMs)H. Birkholz, M. Eckel, S. Bhandari, E. Voit, B. Sulzen, L. Xia, T. Laffey, G. C. FedorkowProposed StandardDecember 2024
9683Remote Integrity Verification of Network Devices Containing Trusted Platform ModulesG. C. Fedorkow, Ed., E. Voit, J. Fitzgerald-McKayInformationalDecember 2024
9679CBOR Object Signing and Encryption (COSE) Key ThumbprintK. Isobe, H. Tschofenig, O. SteeleProposed StandardDecember 2024
9678Forward Secrecy Extension to the Improved Extensible Authentication Protocol Method for Authentication and Key Agreement (EAP-AKA' FS)J. Arkko, K. Norrman, J. Preuß MattssonProposed StandardMarch 2025
9662Updates to the Cipher Suites in Secure SyslogC. Lonvick, S. Turner, J. SaloweyProposed StandardOctober 2024
9654Online Certificate Status Protocol (OCSP) Nonce ExtensionH. Sharma, Ed.Proposed StandardAugust 2024
9635Grant Negotiation and Authorization Protocol (GNAP)J. Richer, Ed., F. ImbaultProposed StandardOctober 2024
9629Using Key Encapsulation Mechanism (KEM) Algorithms in the Cryptographic Message Syntax (CMS)R. Housley, J. Gray, T. OkuboProposed StandardAugust 2024
9618Updates to X.509 Policy ValidationD. BenjaminProposed StandardAugust 2024
9611Internet Key Exchange Protocol Version 2 (IKEv2) Support for Per-Resource Child Security Associations (SAs)A. Antony, T. Brunner, S. Klassert, P. WoutersProposed StandardJuly 2024
9608No Revocation Available for X.509 Public Key CertificatesR. Housley, T. Okubo, J. MandelProposed StandardJune 2024
9598Internationalized Email Addresses in X.509 CertificatesA. Melnikov, W. Chuang, C. BonnellProposed StandardMay 2024
9597CBOR Web Token (CWT) Claims in COSE HeadersT. Looker, M.B. JonesProposed StandardJune 2024
9596CBOR Object Signing and Encryption (COSE) "typ" (type) Header ParameterM.B. Jones, O. SteeleProposed StandardJune 2024
9594Key Provisioning for Group Communication Using Authentication and Authorization for Constrained Environments (ACE)F. Palombini, M. TilocaProposed StandardSeptember 2024
9593Announcing Supported Authentication Methods in the Internet Key Exchange Protocol Version 2 (IKEv2)V. SmyslovProposed StandardJuly 2024
9588Kerberos Simple Password-Authenticated Key Exchange (SPAKE) Pre-authenticationN. McCallum, S. Sorce, R. Harwood, G. HudsonProposed StandardAugust 2024
9580OpenPGPP. Wouters, Ed., D. Huigens, J. Winter, Y. NiibeProposed StandardJuly 2024
9579Use of Password-Based Message Authentication Code 1 (PBMAC1) in PKCS #12 SyntaxH. Kario · obsoleted by RFC 9879InformationalMay 2024
9578Privacy Pass Issuance ProtocolsS. Celi, A. Davidson, S. Valdez, C. A. WoodProposed StandardJune 2024
9577The Privacy Pass HTTP Authentication SchemeT. Pauly, S. Valdez, C. A. WoodProposed StandardJune 2024
9576The Privacy Pass ArchitectureA. Davidson, J. Iyengar, C. A. WoodInformationalJune 2024
9549Internationalization Updates to RFC 5280R. HousleyProposed StandardMarch 2024
9540Discovery of Oblivious Services via Service Binding RecordsT. Pauly, T. Reddy.KProposed StandardFebruary 2024
9529Traces of Ephemeral Diffie-Hellman Over COSE (EDHOC)G. Selander, J. Preuß Mattsson, M. Serafin, M. Tiloca, M. VučinićInformationalMarch 2024
9528Ephemeral Diffie-Hellman Over COSE (EDHOC)G. Selander, J. Preuß Mattsson, F. PalombiniProposed StandardMarch 2024
9525Service Identity in TLSP. Saint-Andre, R. SalzProposed StandardNovember 2023
9509X.509 Certificate Extended Key Usage (EKU) for 5G Network FunctionsT. Reddy.K, J. Ekman, D. MigaultProposed StandardMarch 2024
9495Certification Authority Authorization (CAA) Processing for Email AddressesC. BonnellProposed StandardOctober 2023
9493Subject Identifiers for Security Event TokensA. Backman, Ed., M. Scurtescu, P. JainProposed StandardDecember 2023
9483Lightweight Certificate Management Protocol (CMP) ProfileH. Brockhaus, D. von Oheimb, S. FriesProposed StandardNovember 2023
9482Constrained Application Protocol (CoAP) Transfer for the Certificate Management ProtocolM. Sahni, Ed., S. Tripathi, Ed.Proposed StandardNovember 2023
9481Certificate Management Protocol (CMP) AlgorithmsH. Brockhaus, H. Aschauer, M. Ounsworth, J. GrayProposed StandardNovember 2023
9480Certificate Management Protocol (CMP) UpdatesH. Brockhaus, D. von Oheimb, J. Gray · obsoleted by RFC 9810, RFC 9811Proposed StandardNovember 2023
9478Labeled IPsec Traffic Selector Support for the Internet Key Exchange Protocol Version 2 (IKEv2)P. Wouters, S. PrasadProposed StandardOctober 2023
9470OAuth 2.0 Step Up Authentication Challenge ProtocolV. Bertocci, B. CampbellProposed StandardSeptember 2023
9464Internet Key Exchange Protocol Version 2 (IKEv2) Configuration for Encrypted DNSM. Boucadair, T. Reddy.K, D. Wing, V. SmyslovProposed StandardNovember 2023
9459CBOR Object Signing and Encryption (COSE): AES-CTR and AES-CBCR. Housley, H. TschofenigProposed StandardSeptember 2023
9458Oblivious HTTPM. Thomson, C. A. WoodProposed StandardJanuary 2024
9449OAuth 2.0 Demonstrating Proof of Possession (DPoP)D. Fett, B. Campbell, J. Bradley, T. Lodderstedt, M. Jones, D. WaiteProposed StandardSeptember 2023
9448TNAuthList Profile of Automated Certificate Management Environment (ACME) Authority TokenC. Wendt, D. Hancock, M. Barnes, J. PetersonProposed StandardSeptember 2023
9447Automated Certificate Management Environment (ACME) Challenges Using an Authority TokenJ. Peterson, M. Barnes, D. Hancock, C. WendtProposed StandardSeptember 2023
9444Automated Certificate Management Environment (ACME) for SubdomainsO. Friel, R. Barnes, T. Hollebeek, M. RichardsonProposed StandardAugust 2023
9431Message Queuing Telemetry Transport (MQTT) and Transport Layer Security (TLS) Profile of Authentication and Authorization for Constrained Environments (ACE) FrameworkC. Sengul, A. KirbyProposed StandardJuly 2023
9430Extension of the Datagram Transport Layer Security (DTLS) Profile for Authentication and Authorization for Constrained Environments (ACE) to Transport Layer Security (TLS)O. Bergmann, J. Preuß Mattsson, G. SelanderProposed StandardJuly 2023
9427TLS-Based Extensible Authentication Protocol (EAP) Types for Use with TLS 1.3A. DeKokProposed StandardJune 2023
9420The Messaging Layer Security (MLS) ProtocolR. Barnes, B. Beurdouche, R. Robert, J. Millican, E. Omara, K. Cohn-GordonProposed StandardJuly 2023
9399Internet X.509 Public Key Infrastructure: Logotypes in X.509 CertificatesS. Santesson, R. Housley, T. Freeman, L. RosentholProposed StandardMay 2023
9397Trusted Execution Environment Provisioning (TEEP) ArchitectureM. Pei, H. Tschofenig, D. Thaler, D. WheelerInformationalJuly 2023
9396OAuth 2.0 Rich Authorization RequestsT. Lodderstedt, J. Richer, B. CampbellProposed StandardMay 2023
9395Deprecation of the Internet Key Exchange Version 1 (IKEv1) Protocol and Obsoleted AlgorithmsP. Wouters, Ed.Proposed StandardApril 2023
9393Concise Software Identification TagsH. Birkholz, J. Fitzgerald-McKay, C. Schmidt, D. WaltermireProposed StandardJune 2023
9387Use Cases for DDoS Open Threat Signaling (DOTS) TelemetryY. Hayashi, M. Chen, L. SuInformationalApril 2023
9370Multiple Key Exchanges in the Internet Key Exchange Protocol Version 2 (IKEv2)CJ. Tjhai, M. Tomlinson, G. Bartlett, S. Fluhrer, D. Van Geest, O. Garcia-Morchon, V. SmyslovProposed StandardMay 2023
9362Distributed Denial-of-Service Open Threat Signaling (DOTS) Signal Channel Configuration Attributes for Robust Block TransmissionM. Boucadair, J. ShallowProposed StandardFebruary 2023
9360CBOR Object Signing and Encryption (COSE): Header Parameters for Carrying and Referencing X.509 CertificatesJ. SchaadProposed StandardFebruary 2023
9349Definitions of Managed Objects for IP Traffic Flow SecurityD. Fedyk, E. KinzieProposed StandardJanuary 2023
9348A YANG Data Model for IP Traffic Flow SecurityD. Fedyk, C. HoppsProposed StandardJanuary 2023
9347Aggregation and Fragmentation Mode for Encapsulating Security Payload (ESP) and Its Use for IP Traffic Flow Security (IP-TFS)C. HoppsProposed StandardJanuary 2023
9345Delegated Credentials for TLS and DTLSR. Barnes, S. Iyengar, N. Sullivan, E. RescorlaProposed StandardJuly 2023
9338CBOR Object Signing and Encryption (COSE): CountersignaturesJ. SchaadInternet StandardDecember 2022
9336X.509 Certificate General-Purpose Extended Key Usage (EKU) for Document SigningT. Ito, T. Okubo, S. TurnerProposed StandardDecember 2022
9334Remote ATtestation procedureS (RATS) ArchitectureH. Birkholz, D. Thaler, M. Richardson, N. Smith, W. PanInformationalJanuary 2023
9329TCP Encapsulation of Internet Key Exchange Protocol (IKE) and IPsec PacketsT. Pauly, V. SmyslovProposed StandardNovember 2022
9325Recommendations for Secure Use of Transport Layer Security (TLS) and Datagram Transport Layer Security (DTLS)Y. Sheffer, P. Saint-Andre, T. FossatiBest Current PracticeNovember 2022
9310X.509 Certificate Extension for 5G Network Function TypesR. Housley, S. Turner, J. Preuß Mattsson, D. MigaultProposed StandardJanuary 2023
9295Clarifications for Ed25519, Ed448, X25519, and X448 Algorithm IdentifiersS. Turner, S. Josefsson, D. McCarney, T. ItoProposed StandardSeptember 2022
9284Multihoming Deployment Considerations for DDoS Open Threat Signaling (DOTS)M. Boucadair, T. Reddy.K, W. PanInformationalAugust 2022
9278JWK Thumbprint URIM. Jones, K. YasudaProposed StandardAugust 2022
9266Channel Bindings for TLS 1.3S. WhitedProposed StandardJuly 2022
9261Exported Authenticators in TLSN. SullivanProposed StandardJuly 2022
9258Importing External Pre-Shared Keys (PSKs) for TLS 1.3D. Benjamin, C. A. WoodProposed StandardJuly 2022
9257Guidance for External Pre-Shared Key (PSK) Usage in TLSR. Housley, J. Hoyland, M. Sethi, C. A. WoodInformationalJuly 2022
9244Distributed Denial-of-Service Open Threat Signaling (DOTS) TelemetryM. Boucadair, Ed., T. Reddy.K, Ed., E. Doron, M. Chen, J. ShallowProposed StandardJune 2022
9242Intermediate Exchange in the Internet Key Exchange Protocol Version 2 (IKEv2)V. SmyslovProposed StandardMay 2022
9237An Authorization Information Format (AIF) for Authentication and Authorization for Constrained Environments (ACE)C. BormannProposed StandardAugust 2022
9216S/MIME Example Keys and CertificatesD. K. Gillmor, Ed.InformationalApril 2022
9207OAuth 2.0 Authorization Server Issuer IdentificationK. Meyer zu Selhausen, D. FettProposed StandardMarch 2022
9203The Object Security for Constrained RESTful Environments (OSCORE) Profile of the Authentication and Authorization for Constrained Environments (ACE) FrameworkF. Palombini, L. Seitz, G. Selander, M. GunnarssonProposed StandardAugust 2022
9202Datagram Transport Layer Security (DTLS) Profile for Authentication and Authorization for Constrained Environments (ACE)S. Gerdes, O. Bergmann, C. Bormann, G. Selander, L. SeitzProposed StandardAugust 2022
9201Additional OAuth Parameters for Authentication and Authorization for Constrained Environments (ACE)L. SeitzProposed StandardAugust 2022
9200Authentication and Authorization for Constrained Environments Using the OAuth 2.0 Framework (ACE-OAuth)L. Seitz, G. Selander, E. Wahlstroem, S. Erdtman, H. TschofenigProposed StandardAugust 2022
9191Handling Large Certificates and Long Certificate Chains in TLS-Based EAP MethodsM. Sethi, J. Preuß Mattsson, S. TurnerInformationalFebruary 2022
9190EAP-TLS 1.3: Using the Extensible Authentication Protocol with TLS 1.3J. Preuß Mattsson, M. SethiProposed StandardFebruary 2022
9162Certificate Transparency Version 2.0B. Laurie, E. Messeri, R. StradlingExperimentalDecember 2021
9158Update to the Object Identifier Registry for the PKIX Working GroupR. HousleyInformationalNovember 2021
9155Deprecating MD5 and SHA-1 Signature Hashes in TLS 1.2 and DTLS 1.2L. Velvindron, K. Moriarty, A. GhediniProposed StandardDecember 2021
9149TLS Ticket RequestsT. Pauly, D. Schinazi, C.A. WoodProposed StandardApril 2022
9148EST-coaps: Enrollment over Secure Transport with the Secure Constrained Application ProtocolP. van der Stok, P. Kampanakis, M. Richardson, S. RazaProposed StandardApril 2022
9147The Datagram Transport Layer Security (DTLS) Protocol Version 1.3E. Rescorla, H. Tschofenig, N. ModaduguProposed StandardApril 2022
9146Connection Identifier for DTLS 1.2E. Rescorla, Ed., H. Tschofenig, Ed., T. Fossati, A. KrausProposed StandardMarch 2022
9142Key Exchange (KEX) Method Updates and Recommendations for Secure Shell (SSH)M. BaushkeProposed StandardJanuary 2022
9140Nimble Out-of-Band Authentication for EAP (EAP-NOOB)T. Aura, M. Sethi, A. PeltonenProposed StandardDecember 2021
9133Controlling Filtering Rules Using Distributed Denial-of-Service Open Threat Signaling (DOTS) Signal ChannelK. Nishizuka, M. Boucadair, T. Reddy.K, T. NagataProposed StandardSeptember 2021
9132Distributed Denial-of-Service Open Threat Signaling (DOTS) Signal Channel SpecificationM. Boucadair, Ed., J. Shallow, T. Reddy.KProposed StandardSeptember 2021
9126OAuth 2.0 Pushed Authorization RequestsT. Lodderstedt, B. Campbell, N. Sakimura, D. Tonge, F. SkokanProposed StandardSeptember 2021
9124A Manifest Information Model for Firmware Updates in Internet of Things (IoT) DevicesB. Moran, H. Tschofenig, H. BirkholzInformationalJanuary 2022
9115An Automatic Certificate Management Environment (ACME) Profile for Generating Delegated CertificatesY. Sheffer, D. López, A. Pastor Perales, T. FossatiProposed StandardSeptember 2021
9101The OAuth 2.0 Authorization Framework: JWT-Secured Authorization Request (JAR)N. Sakimura, J. Bradley, M. JonesProposed StandardAugust 2021
9068JSON Web Token (JWT) Profile for OAuth 2.0 Access TokensV. BertocciProposed StandardOctober 2021
9066Distributed Denial-of-Service Open Threat Signaling (DOTS) Signal Channel Call HomeT. Reddy.K, M. Boucadair, Ed., J. ShallowProposed StandardDecember 2021
9061A YANG Data Model for IPsec Flow Protection Based on Software-Defined Networking (SDN)R. Marin-Lopez, G. Lopez-Millan, F. Pereniguez-GarciaProposed StandardJuly 2021
9054CBOR Object Signing and Encryption (COSE): Hash AlgorithmsJ. SchaadInformationalAugust 2022
9053CBOR Object Signing and Encryption (COSE): Initial AlgorithmsJ. SchaadInformationalAugust 2022
9052CBOR Object Signing and Encryption (COSE): Structures and ProcessJ. SchaadInternet StandardAugust 2022
9048Improved Extensible Authentication Protocol Method for 3GPP Mobile Network Authentication and Key Agreement (EAP-AKA')J. Arkko, V. Lehtovirta, V. Torvinen, P. EronenProposed StandardOctober 2021
9045Algorithm Requirements Update to the Internet X.509 Public Key Infrastructure Certificate Request Message Format (CRMF)R. HousleyProposed StandardJune 2021
9044Using the AES-GMAC Algorithm with the Cryptographic Message Syntax (CMS)R. HousleyProposed StandardJune 2021
9019A Firmware Update Architecture for Internet of ThingsB. Moran, H. Tschofenig, D. Brown, M. MeriacInformationalApril 2021
8997Deprecation of TLS 1.1 for Email Submission and AccessL. Velvindron, S. FarrellProposed StandardMarch 2021
8996Deprecating TLS 1.0 and TLS 1.1K. Moriarty, S. FarrellBest Current PracticeMarch 2021
8983Internet Key Exchange Protocol Version 2 (IKEv2) Notification Status Types for IPv4/IPv6 CoexistenceM. BoucadairProposed StandardFebruary 2021
8973DDoS Open Threat Signaling (DOTS) Agent DiscoveryM. Boucadair, T. Reddy.KProposed StandardJanuary 2021
8954Online Certificate Status Protocol (OCSP) Nonce ExtensionM. Sahni, Ed. · obsoleted by RFC 9654Proposed StandardNovember 2020
8951Clarification of Enrollment over Secure Transport (EST): Transfer Encodings and ASN.1M. Richardson, T. Werner, W. PanProposed StandardNovember 2020
8940Extensible Authentication Protocol (EAP) Session-Id Derivation for EAP Subscriber Identity Module (EAP-SIM), EAP Authentication and Key Agreement (EAP-AKA), and Protected EAP (PEAP)A. DeKokProposed StandardOctober 2020
8936Poll-Based Security Event Token (SET) Delivery Using HTTPA. Backman, Ed., M. Jones, Ed., M. Scurtescu, M. Ansari, A. NadalinProposed StandardNovember 2020
8935Push-Based Security Event Token (SET) Delivery Using HTTPA. Backman, Ed., M. Jones, Ed., M. Scurtescu, M. Ansari, A. NadalinProposed StandardNovember 2020
8933Update to the Cryptographic Message Syntax (CMS) for Algorithm Identifier ProtectionR. HousleyProposed StandardOctober 2020
8903Use Cases for DDoS Open Threat SignalingR. Dobbins, D. Migault, R. Moskowitz, N. Teague, L. Xia, K. NishizukaInformationalMay 2021
8879TLS Certificate CompressionA. Ghedini, V. VasilievProposed StandardDecember 2020
8823Extensions to Automatic Certificate Management Environment for End-User S/MIME CertificatesA. MelnikovInformationalApril 2021
8813Clarifications for Elliptic Curve Cryptography Subject Public Key InformationT. Ito, S. TurnerProposed StandardAugust 2020
8812CBOR Object Signing and Encryption (COSE) and JSON Object Signing and Encryption (JOSE) Registrations for Web Authentication (WebAuthn) AlgorithmsM. JonesProposed StandardAugust 2020
8811DDoS Open Threat Signaling (DOTS) ArchitectureA. Mortensen, Ed., T. Reddy.K, Ed., F. Andreasen, N. Teague, R. ComptonInformationalAugust 2020
8784Mixing Preshared Keys in the Internet Key Exchange Protocol Version 2 (IKEv2) for Post-quantum SecurityS. Fluhrer, P. Kampanakis, D. McGrew, V. SmyslovProposed StandardJune 2020
8783Distributed Denial-of-Service Open Threat Signaling (DOTS) Data Channel SpecificationM. Boucadair, Ed., T. Reddy.K, Ed.Proposed StandardMay 2020
8782Distributed Denial-of-Service Open Threat Signaling (DOTS) Signal Channel SpecificationT. Reddy.K, Ed., M. Boucadair, Ed., P. Patil, A. Mortensen, N. Teague · obsoleted by RFC 9132Proposed StandardMay 2020
8778Use of the HSS/LMS Hash-Based Signature Algorithm with CBOR Object Signing and Encryption (COSE)R. HousleyProposed StandardApril 2020
8773TLS 1.3 Extension for Certificate-Based Authentication with an External Pre-Shared KeyR. Housley · obsoleted by RFC 9973ExperimentalMarch 2020
8758Deprecating RC4 in Secure Shell (SSH)L. VelvindronBest Current PracticeApril 2020
8750Implicit Initialization Vector (IV) for Counter-Based Ciphers in Encapsulating Security Payload (ESP)D. Migault, T. Guggemos, Y. NirProposed StandardMarch 2020
8747Proof-of-Possession Key Semantics for CBOR Web Tokens (CWTs)M. Jones, L. Seitz, G. Selander, S. Erdtman, H. TschofenigProposed StandardMarch 2020
8744Issues and Requirements for Server Name Identification (SNI) Encryption in TLSC. HuitemaInformationalJuly 2020
8739Support for Short-Term, Automatically Renewed (STAR) Certificates in the Automated Certificate Management Environment (ACME)Y. Sheffer, D. Lopez, O. Gonzalez de Dios, A. Pastor Perales, T. FossatiProposed StandardMarch 2020
8738Automated Certificate Management Environment (ACME) IP Identifier Validation ExtensionR.B. ShoemakerProposed StandardFebruary 2020
8737Automated Certificate Management Environment (ACME) TLS Application-Layer Protocol Negotiation (ALPN) Challenge ExtensionR.B. ShoemakerProposed StandardFebruary 2020
8732Generic Security Service Application Program Interface (GSS-API) Key Exchange with SHA-2S. Sorce, H. KarioProposed StandardFebruary 2020
8731Secure Shell (SSH) Key Exchange Method Using Curve25519 and Curve448A. Adamantiadis, S. Josefsson, M. BaushkeProposed StandardFebruary 2020
8727JSON Binding of the Incident Object Description Exchange FormatT. Takahashi, R. Danyliw, M. SuzukiProposed StandardAugust 2020
8725JSON Web Token Best Current PracticesY. Sheffer, D. Hardt, M. JonesBest Current PracticeFebruary 2020
8709Ed25519 and Ed448 Public Key Algorithms for the Secure Shell (SSH) ProtocolB. Harris, L. VelvindronProposed StandardFebruary 2020
8708Use of the HSS/LMS Hash-Based Signature Algorithm in the Cryptographic Message Syntax (CMS)R. Housley · obsoleted by RFC 9708Proposed StandardFebruary 2020
8707Resource Indicators for OAuth 2.0B. Campbell, J. Bradley, H. TschofenigProposed StandardFebruary 2020
8705OAuth 2.0 Mutual-TLS Client Authentication and Certificate-Bound Access TokensB. Campbell, J. Bradley, N. Sakimura, T. LodderstedtProposed StandardFebruary 2020
8702Use of the SHAKE One-Way Hash Functions in the Cryptographic Message Syntax (CMS)P. Kampanakis, Q. DangProposed StandardJanuary 2020
8701Applying Generate Random Extensions And Sustain Extensibility (GREASE) to TLS ExtensibilityD. BenjaminInformationalJanuary 2020
8696Using Pre-Shared Key (PSK) in the Cryptographic Message Syntax (CMS)R. HousleyProposed StandardDecember 2019
8693OAuth 2.0 Token ExchangeM. Jones, A. Nadalin, B. Campbell, Ed., J. Bradley, C. MortimoreProposed StandardJanuary 2020
8692Internet X.509 Public Key Infrastructure: Additional Algorithm Identifiers for RSASSA-PSS and ECDSA Using SHAKEsP. Kampanakis, Q. DangProposed StandardDecember 2019
8689SMTP Require TLS OptionJ. FentonProposed StandardNovember 2019
8659DNS Certification Authority Authorization (CAA) Resource RecordP. Hallam-Baker, R. Stradling, J. Hoffman-AndrewsProposed StandardNovember 2019
8657Certification Authority Authorization (CAA) Record Extensions for Account URI and Automatic Certificate Management Environment (ACME) Method BindingH. LandauProposed StandardNovember 2019
8649Hash Of Root Key Certificate ExtensionR. HousleyInformationalAugust 2019
8636Public Key Cryptography for Initial Authentication in Kerberos (PKINIT) Algorithm AgilityL. Hornquist Astrand, L. Zhu, M. Cullen, G. HudsonProposed StandardJuly 2019
8628OAuth 2.0 Device Authorization GrantW. Denniss, J. Bradley, M. Jones, H. TschofenigProposed StandardAugust 2019
8612DDoS Open Threat Signaling (DOTS) RequirementsA. Mortensen, T. Reddy, R. MoskowitzInformationalMay 2019
8600Using Extensible Messaging and Presence Protocol (XMPP) for Security Information ExchangeN. Cam-Winget, Ed., S. Appala, S. Pope, P. Saint-AndreProposed StandardJune 2019
8598Split DNS Configuration for the Internet Key Exchange Protocol Version 2 (IKEv2)T. Pauly, P. WoutersProposed StandardMay 2019
8559Dynamic Authorization Proxying in the Remote Authentication Dial-In User Service (RADIUS) ProtocolA. DeKok, J. KorhonenProposed StandardApril 2019
8555Automatic Certificate Management Environment (ACME)R. Barnes, J. Hoffman-Andrews, D. McCarney, J. KastenProposed StandardMarch 2019
8551Secure/Multipurpose Internet Mail Extensions (S/MIME) Version 4.0 Message SpecificationJ. Schaad, B. Ramsdell, S. TurnerProposed StandardApril 2019
8550Secure/Multipurpose Internet Mail Extensions (S/MIME) Version 4.0 Certificate HandlingJ. Schaad, B. Ramsdell, S. TurnerProposed StandardApril 2019
8473Token Binding over HTTPA. Popov, M. Nystroem, D. Balfanz, Ed., N. Harper, J. HodgesProposed StandardOctober 2018
8472Transport Layer Security (TLS) Extension for Token Binding Protocol NegotiationA. Popov, Ed., M. Nystroem, D. BalfanzProposed StandardOctober 2018
8471The Token Binding Protocol Version 1.0A. Popov, Ed., M. Nystroem, D. Balfanz, J. HodgesProposed StandardOctober 2018
8461SMTP MTA Strict Transport Security (MTA-STS)D. Margolis, M. Risher, B. Ramakrishnan, A. Brotman, J. JonesProposed StandardSeptember 2018
8460SMTP TLS ReportingD. Margolis, A. Brotman, B. Ramakrishnan, J. Jones, M. RisherProposed StandardSeptember 2018
8449Record Size Limit Extension for TLSM. ThomsonProposed StandardAugust 2018
8448Example Handshake Traces for TLS 1.3M. ThomsonInformationalJanuary 2019
8447IANA Registry Updates for TLS and DTLSJ. Salowey, S. TurnerProposed StandardAugust 2018
8446The Transport Layer Security (TLS) Protocol Version 1.3E. Rescorla · obsoleted by RFC 9846Proposed StandardAugust 2018
8442ECDHE_PSK with AES-GCM and AES-CCM Cipher Suites for TLS 1.2 and DTLS 1.2J. Mattsson, D. MigaultProposed StandardSeptember 2018
8429Deprecate Triple-DES (3DES) and RC4 in KerberosB. Kaduk, M. ShortBest Current PracticeOctober 2018
8422Elliptic Curve Cryptography (ECC) Cipher Suites for Transport Layer Security (TLS) Versions 1.2 and EarlierY. Nir, S. Josefsson, M. Pegourie-Gonnard · obsoleted by RFC 9846Proposed StandardAugust 2018
8420Using the Edwards-Curve Digital Signature Algorithm (EdDSA) in the Internet Key Exchange Protocol Version 2 (IKEv2)Y. NirProposed StandardAugust 2018
8419Use of Edwards-Curve Digital Signature Algorithm (EdDSA) Signatures in the Cryptographic Message Syntax (CMS)R. HousleyProposed StandardAugust 2018
8418Use of the Elliptic Curve Diffie-Hellman Key Agreement Algorithm with X25519 and X448 in the Cryptographic Message Syntax (CMS)R. HousleyProposed StandardAugust 2018
8417Security Event Token (SET)P. Hunt, Ed., M. Jones, W. Denniss, M. AnsariProposed StandardJuly 2018
8414OAuth 2.0 Authorization Server MetadataM. Jones, N. Sakimura, J. BradleyProposed StandardJune 2018
8412Software Inventory Message and Attributes (SWIMA) for PA-TNCC. Schmidt, D. Haynes, C. Coffin, D. Waltermire, J. Fitzgerald-McKayProposed StandardJuly 2018
8411IANA Registration for the Cryptographic Algorithm Object Identifier RangeJ. Schaad, R. AndrewsInformationalAugust 2018
8410Algorithm Identifiers for Ed25519, Ed448, X25519, and X448 for Use in the Internet X.509 Public Key InfrastructureS. Josefsson, J. SchaadProposed StandardAugust 2018
8399Internationalization Updates to RFC 5280R. Housley · obsoleted by RFC 9549Proposed StandardMay 2018
8398Internationalized Email Addresses in X.509 CertificatesA. Melnikov, Ed., W. Chuang, Ed. · obsoleted by RFC 9598Proposed StandardMay 2018
8392CBOR Web Token (CWT)M. Jones, E. Wahlstroem, S. Erdtman, H. TschofenigProposed StandardMay 2018
8353Generic Security Service API Version 2: Java Bindings UpdateM. Upadhyay, S. Malkani, W. WangProposed StandardMay 2018
8332Use of RSA Keys with SHA-256 and SHA-512 in the Secure Shell (SSH) ProtocolD. BiderProposed StandardMarch 2018
8329Framework for Interface to Network Security FunctionsD. Lopez, E. Lopez, L. Dunbar, J. Strassner, R. KumarInformationalFebruary 2018
8322Resource-Oriented Lightweight Information Exchange (ROLIE)J. Field, S. Banghart, D. WaltermireProposed StandardFebruary 2018
8314Cleartext Considered Obsolete: Use of Transport Layer Security (TLS) for Email Submission and AccessK. Moore, C. NewmanProposed StandardJanuary 2018
8308Extension Negotiation in the Secure Shell (SSH) ProtocolD. BiderProposed StandardMarch 2018
8274Incident Object Description Exchange Format Usage GuidanceP. Kampanakis, M. SuzukiInformationalNovember 2017
8270Increase the Secure Shell Minimum Recommended Diffie-Hellman Modulus Size to 2048 BitsL. Velvindron, M. BaushkeProposed StandardDecember 2017
8268More Modular Exponentiation (MODP) Diffie-Hellman (DH) Key Exchange (KEX) Groups for Secure Shell (SSH)M. BaushkeProposed StandardDecember 2017
8252OAuth 2.0 for Native AppsW. Denniss, J. BradleyBest Current PracticeOctober 2017
8248Security Automation and Continuous Monitoring (SACM) RequirementsN. Cam-Winget, L. LorenzinInformationalSeptember 2017
8247Algorithm Implementation Requirements and Usage Guidance for the Internet Key Exchange Protocol Version 2 (IKEv2)Y. Nir, T. Kivinen, P. Wouters, D. MigaultProposed StandardSeptember 2017
8229TCP Encapsulation of IKE and IPsec PacketsT. Pauly, S. Touati, R. Mantha · obsoleted by RFC 9329Proposed StandardAugust 2017
8221Cryptographic Algorithm Implementation Requirements and Usage Guidance for Encapsulating Security Payload (ESP) and Authentication Header (AH)P. Wouters, D. Migault, J. Mattsson, Y. Nir, T. KivinenProposed StandardOctober 2017
8192Interface to Network Security Functions (I2NSF): Problem Statement and Use CasesS. Hares, D. Lopez, M. Zarny, C. Jacquenet, R. Kumar, J. JeongInformationalJuly 2017
8176Authentication Method Reference ValuesM. Jones, P. Hunt, A. NadalinProposed StandardJune 2017
8162Using Secure DNS to Associate Certificates with Domain Names for S/MIMEP. Hoffman, J. SchlyterExperimentalMay 2017
8152CBOR Object Signing and Encryption (COSE)J. Schaad · obsoleted by RFC 9052, RFC 9053Proposed StandardJuly 2017
8134Management Incident Lightweight Exchange (MILE) Implementation ReportC. Inacio, D. MiyamotoInformationalMay 2017
8129Authentication Indicator in Kerberos TicketsA. Jain, N. Kinder, N. McCallumProposed StandardMarch 2017
8121Mutual Authentication Protocol for HTTP: Cryptographic Algorithms Based on the Key Agreement Mechanism 3 (KAM3)Y. Oiwa, H. Watanabe, H. Takagi, K. Maeda, T. Hayashi, Y. IokuExperimentalApril 2017
8120Mutual Authentication Protocol for HTTPY. Oiwa, H. Watanabe, H. Takagi, K. Maeda, T. Hayashi, Y. IokuExperimentalApril 2017
8103Using ChaCha20-Poly1305 Authenticated Encryption in the Cryptographic Message Syntax (CMS)R. HousleyProposed StandardFebruary 2017
8080Edwards-Curve Digital Security Algorithm (EdDSA) for DNSSECO. Sury, R. EdmondsProposed StandardFebruary 2017
8070Public Key Cryptography for Initial Authentication in Kerberos (PKINIT) Freshness ExtensionM. Short, Ed., S. Moore, P. MillerProposed StandardFebruary 2017
8062Anonymity Support for KerberosL. Zhu, P. Leach, S. Hartman, S. Emery, Ed.Proposed StandardFebruary 2017
8053HTTP Authentication Extensions for Interactive ClientsY. Oiwa, H. Watanabe, H. Takagi, K. Maeda, T. Hayashi, Y. IokuExperimentalJanuary 2017
8045RADIUS Extensions for IP Port Configuration and ReportingD. Cheng, J. Korhonen, M. Boucadair, S. SivakumarProposed StandardJanuary 2017
8044Data Types in RADIUSA. DeKokProposed StandardJanuary 2017
8037CFRG Elliptic Curve Diffie-Hellman (ECDH) and Signatures in JSON Object Signing and Encryption (JOSE)I. LiusvaaraProposed StandardJanuary 2017
8031Curve25519 and Curve448 for the Internet Key Exchange Protocol Version 2 (IKEv2) Key AgreementY. Nir, S. JosefssonProposed StandardDecember 2016
8019Protecting Internet Key Exchange Protocol Version 2 (IKEv2) Implementations from Distributed Denial-of-Service AttacksY. Nir, V. SmyslovProposed StandardNovember 2016
8009AES Encryption with HMAC-SHA2 for Kerberos 5M. Jenkins, M. Peck, K. BurginInformationalOctober 2016
7970The Incident Object Description Exchange Format Version 2R. DanyliwProposed StandardNovember 2016
7930Larger Packets for RADIUS over TCPS. HartmanExperimentalAugust 2016
7929DNS-Based Authentication of Named Entities (DANE) Bindings for OpenPGPP. WoutersExperimentalAugust 2016
7925Transport Layer Security (TLS) / Datagram Transport Layer Security (DTLS) Profiles for the Internet of ThingsH. Tschofenig, Ed., T. FossatiProposed StandardJuly 2016
7924Transport Layer Security (TLS) Cached Information ExtensionS. Santesson, H. TschofenigProposed StandardJuly 2016
7919Negotiated Finite Field Diffie-Hellman Ephemeral Parameters for Transport Layer Security (TLS)D. GillmorProposed StandardAugust 2016
7918Transport Layer Security (TLS) False StartA. Langley, N. Modadugu, B. MoellerInformationalAugust 2016
7905ChaCha20-Poly1305 Cipher Suites for Transport Layer Security (TLS)A. Langley, W. Chang, N. Mavrogiannopoulos, J. Strombergson, S. JosefssonProposed StandardJune 2016
7833A RADIUS Attribute, Binding, Profiles, Name Identifier Format, and Confirmation Methods for the Security Assertion Markup Language (SAML)J. Howlett, S. Hartman, A. Perez-Mendez, Ed.Proposed StandardMay 2016
7832Application Bridging for Federated Access Beyond Web (ABFAB) Use CasesR. Smith, Ed.InformationalMay 2016
7831Application Bridging for Federated Access Beyond Web (ABFAB) ArchitectureJ. Howlett, S. Hartman, H. Tschofenig, J. SchaadInformationalMay 2016
7817Updated Transport Layer Security (TLS) Server Identity Check Procedure for Email-Related ProtocolsA. MelnikovProposed StandardMarch 2016
7804Salted Challenge Response HTTP Authentication MechanismA. MelnikovExperimentalMarch 2016
7802A Pseudo-Random Function (PRF) for the Kerberos V Generic Security Service Application Program Interface (GSS-API) MechanismS. Emery, N. WilliamsProposed StandardMarch 2016
7800Proof-of-Possession Key Semantics for JSON Web Tokens (JWTs)M. Jones, J. Bradley, H. TschofenigProposed StandardApril 2016
7797JSON Web Signature (JWS) Unencoded Payload OptionM. JonesProposed StandardFebruary 2016
7751Kerberos Authorization Data Container Authenticated by Multiple Message Authentication Codes (MACs)S. Sorce, T. YuProposed StandardMarch 2016
7744Use Cases for Authentication and Authorization in Constrained EnvironmentsL. Seitz, Ed., S. Gerdes, Ed., G. Selander, M. Mani, S. KumarInformationalJanuary 2016
7685A Transport Layer Security (TLS) ClientHello Padding ExtensionA. LangleyProposed StandardOctober 2015
7673Using DNS-Based Authentication of Named Entities (DANE) TLSA Records with SRV RecordsT. Finch, M. Miller, P. Saint-AndreProposed StandardOctober 2015
7672SMTP Security via Opportunistic DNS-Based Authentication of Named Entities (DANE) Transport Layer Security (TLS)V. Dukhovni, W. HardakerProposed StandardOctober 2015
7671The DNS-Based Authentication of Named Entities (DANE) Protocol: Updates and Operational GuidanceV. Dukhovni, W. HardakerProposed StandardOctober 2015
7662OAuth 2.0 Token IntrospectionJ. Richer, Ed.Proposed StandardOctober 2015
7644System for Cross-domain Identity Management: ProtocolP. Hunt, Ed., K. Grizzle, M. Ansari, E. Wahlstroem, C. MortimoreProposed StandardSeptember 2015
7643System for Cross-domain Identity Management: Core SchemaP. Hunt, Ed., K. Grizzle, E. Wahlstroem, C. MortimoreProposed StandardSeptember 2015
7642System for Cross-domain Identity Management: Definitions, Overview, Concepts, and RequirementsK. LI, Ed., P. Hunt, B. Khasnabish, A. Nadalin, Z. ZeltsanInformationalSeptember 2015
7638JSON Web Key (JWK) ThumbprintM. Jones, N. SakimuraProposed StandardSeptember 2015
7636Proof Key for Code Exchange by OAuth Public ClientsN. Sakimura, Ed., J. Bradley, N. AgarwalProposed StandardSeptember 2015
7634ChaCha20, Poly1305, and Their Use in the Internet Key Exchange Protocol (IKE) and IPsecY. NirProposed StandardAugust 2015
7632Endpoint Security Posture Assessment: Enterprise Use CasesD. Waltermire, D. HarringtonInformationalSeptember 2015
7628A Set of Simple Authentication and Security Layer (SASL) Mechanisms for OAuthW. Mills, T. Showalter, H. TschofenigProposed StandardAugust 2015
7627Transport Layer Security (TLS) Session Hash and Extended Master Secret ExtensionK. Bhargavan, Ed., A. Delignat-Lavaud, A. Pironti, A. Langley, M. Ray · obsoleted by RFC 9846Proposed StandardSeptember 2015
7619The NULL Authentication Method in the Internet Key Exchange Protocol Version 2 (IKEv2)V. Smyslov, P. WoutersProposed StandardAugust 2015
7617The 'Basic' HTTP Authentication SchemeJ. ReschkeProposed StandardSeptember 2015
7616HTTP Digest Access AuthenticationR. Shekh-Yusef, Ed., D. Ahrens, S. BremerProposed StandardSeptember 2015
7592OAuth 2.0 Dynamic Client Registration Management ProtocolJ. Richer, Ed., M. Jones, J. Bradley, M. MachulakExperimentalJuly 2015
7591OAuth 2.0 Dynamic Client Registration ProtocolJ. Richer, Ed., M. Jones, J. Bradley, M. Machulak, P. HuntProposed StandardJuly 2015
7590Use of Transport Layer Security (TLS) in the Extensible Messaging and Presence Protocol (XMPP)P. Saint-Andre, T. AlkemadeProposed StandardJune 2015
7585Dynamic Peer Discovery for RADIUS/TLS and RADIUS/DTLS Based on the Network Access Identifier (NAI)S. Winter, M. McCauleyExperimentalOctober 2015
7568Deprecating Secure Sockets Layer Version 3.0R. Barnes, M. Thomson, A. Pironti, A. LangleyProposed StandardJune 2015
7546Structure of the Generic Security Service (GSS) Negotiation LoopB. KadukInformationalMay 2015
7542The Network Access IdentifierA. DeKokProposed StandardMay 2015
7525Recommendations for Secure Use of Transport Layer Security (TLS) and Datagram Transport Layer Security (DTLS)Y. Sheffer, R. Holz, P. Saint-Andre · obsoleted by RFC 9325Best Current PracticeMay 2015
7523JSON Web Token (JWT) Profile for OAuth 2.0 Client Authentication and Authorization GrantsM. Jones, B. Campbell, C. MortimoreProposed StandardMay 2015
7522Security Assertion Markup Language (SAML) 2.0 Profile for OAuth 2.0 Client Authentication and Authorization GrantsB. Campbell, C. Mortimore, M. JonesProposed StandardMay 2015
7521Assertion Framework for OAuth 2.0 Client Authentication and Authorization GrantsB. Campbell, C. Mortimore, M. Jones, Y. GolandProposed StandardMay 2015
7520Examples of Protecting Content Using JSON Object Signing and Encryption (JOSE)M. MillerInformationalMay 2015
7519JSON Web Token (JWT)M. Jones, J. Bradley, N. SakimuraProposed StandardMay 2015
7518JSON Web Algorithms (JWA)M. JonesProposed StandardMay 2015
7517JSON Web Key (JWK)M. JonesProposed StandardMay 2015
7516JSON Web Encryption (JWE)M. Jones, J. HildebrandProposed StandardMay 2015
7515JSON Web Signature (JWS)M. Jones, J. Bradley, N. SakimuraProposed StandardMay 2015
7507TLS Fallback Signaling Cipher Suite Value (SCSV) for Preventing Protocol Downgrade AttacksB. Moeller, A. Langley · obsoleted by RFC 8996Proposed StandardApril 2015
7499Support of Fragmentation of RADIUS PacketsA. Perez-Mendez, Ed., R. Marin-Lopez, F. Pereniguez-Garcia, G. Lopez-Millan, D. Lopez, A. DeKokExperimentalApril 2015
7495Enumeration Reference Format for the Incident Object Description Exchange Format (IODEF)A. Montville, D. BlackProposed StandardMarch 2015
7486HTTP Origin-Bound Authentication (HOBA)S. Farrell, P. Hoffman, M. ThomasExperimentalMarch 2015
7465Prohibiting RC4 Cipher SuitesA. PopovProposed StandardFebruary 2015
7457Summarizing Known Attacks on Transport Layer Security (TLS) and Datagram TLS (DTLS)Y. Sheffer, R. Holz, P. Saint-AndreInformationalFebruary 2015
7427Signature Authentication in the Internet Key Exchange Version 2 (IKEv2)T. Kivinen, J. SnyderProposed StandardJanuary 2015
7383Internet Key Exchange Protocol Version 2 (IKEv2) Message FragmentationV. SmyslovProposed StandardNovember 2014
7366Encrypt-then-MAC for Transport Layer Security (TLS) and Datagram Transport Layer Security (DTLS)P. GutmannProposed StandardSeptember 2014
7360Datagram Transport Layer Security (DTLS) as a Transport Layer for RADIUSA. DeKokExperimentalSeptember 2014
7321Cryptographic Algorithm Implementation Requirements and Usage Guidance for Encapsulating Security Payload (ESP) and Authentication Header (AH)D. McGrew, P. Hoffman · obsoleted by RFC 8221Proposed StandardAugust 2014
7301Transport Layer Security (TLS) Application-Layer Protocol Negotiation ExtensionS. Friedl, A. Popov, A. Langley, E. StephanProposed StandardJuly 2014
7296Internet Key Exchange Protocol Version 2 (IKEv2)C. Kaufman, P. Hoffman, Y. Nir, P. Eronen, T. KivinenInternet StandardOctober 2014
7268RADIUS Attributes for IEEE 802 NetworksB. Aboba, J. Malinen, P. Congdon, J. Salowey, M. JonesProposed StandardJuly 2014
7250Using Raw Public Keys in Transport Layer Security (TLS) and Datagram Transport Layer Security (DTLS)P. Wouters, Ed., H. Tschofenig, Ed., J. Gilmore, S. Weiler, T. KivinenProposed StandardJune 2014
7218Adding Acronyms to Simplify Conversations about DNS-Based Authentication of Named Entities (DANE)O. GudmundssonProposed StandardApril 2014
7203An Incident Object Description Exchange Format (IODEF) Extension for Structured Cybersecurity InformationT. Takahashi, K. Landfield, Y. KadobayashiProposed StandardApril 2014
7171PT-EAP: Posture Transport (PT) Protocol for Extensible Authentication Protocol (EAP) Tunnel MethodsN. Cam-Winget, P. SangsterProposed StandardMay 2014
7170Tunnel Extensible Authentication Protocol (TEAP) Version 1H. Zhou, N. Cam-Winget, J. Salowey, S. Hanna · obsoleted by RFC 9930Proposed StandardMay 2014
7165Use Cases and Requirements for JSON Object Signing and Encryption (JOSE)R. BarnesInformationalApril 2014
7057Update to the Extensible Authentication Protocol (EAP) Applicability Statement for Application Bridging for Federated Access Beyond Web (ABFAB)S. Winter, J. SaloweyProposed StandardDecember 2013
7056Name Attributes for the GSS-API Extensible Authentication Protocol (EAP) MechanismS. Hartman, J. HowlettProposed StandardDecember 2013
7055A GSS-API Mechanism for the Extensible Authentication ProtocolS. Hartman, Ed., J. HowlettProposed StandardDecember 2013
7030Enrollment over Secure TransportM. Pritikin, Ed., P. Yee, Ed., D. Harkins, Ed.Proposed StandardOctober 2013
7029Extensible Authentication Protocol (EAP) Mutual Cryptographic BindingS. Hartman, M. Wasserman, D. ZhangInformationalOctober 2013
7018Auto-Discovery VPN Problem Statement and RequirementsV. Manral, S. HannaInformationalSeptember 2013
7009OAuth 2.0 Token RevocationT. Lodderstedt, Ed., S. Dronia, M. ScurtescuProposed StandardAugust 2013
6989Additional Diffie-Hellman Tests for the Internet Key Exchange Protocol Version 2 (IKEv2)Y. Sheffer, S. FluhrerProposed StandardJuly 2013
6961The Transport Layer Security (TLS) Multiple Certificate Status Request ExtensionY. Pettersen · obsoleted by RFC 8446, RFC 9846Proposed StandardJune 2013
6960X.509 Internet Public Key Infrastructure Online Certificate Status Protocol - OCSPS. Santesson, M. Myers, R. Ankney, A. Malpani, S. Galperin, C. AdamsProposed StandardJune 2013
6929Remote Authentication Dial In User Service (RADIUS) Protocol ExtensionsA. DeKok, A. LiorProposed StandardApril 2013
6911RADIUS Attributes for IPv6 Access NetworksW. Dec, Ed., B. Sarikaya, G. Zorn, Ed., D. Miles, B. LourdeletProposed StandardApril 2013
6880An Information Model for Kerberos Version 5L. JohanssonProposed StandardMarch 2013
6876A Posture Transport Protocol over TLS (PT-TLS)P. Sangster, N. Cam-Winget, J. SaloweyProposed StandardFebruary 2013
6844DNS Certification Authority Authorization (CAA) Resource RecordP. Hallam-Baker, R. Stradling · obsoleted by RFC 8659Proposed StandardJanuary 2013
6819OAuth 2.0 Threat Model and Security ConsiderationsT. Lodderstedt, Ed., M. McGloin, P. HuntInformationalJanuary 2013
6818Updates to the Internet X.509 Public Key Infrastructure Certificate and Certificate Revocation List (CRL) ProfileP. YeeProposed StandardJanuary 2013
6813The Network Endpoint Assessment (NEA) Asokan Attack AnalysisJ. Salowey, S. HannaInformationalDecember 2012
6806Kerberos Principal Name Canonicalization and Cross-Realm ReferralsS. Hartman, Ed., K. Raeburn, L. ZhuProposed StandardNovember 2012
6803Camellia Encryption for Kerberos 5G. HudsonInformationalNovember 2012
6784Kerberos Options for DHCPv6S. Sakane, M. IshiyamaProposed StandardNovember 2012
6755An IETF URN Sub-Namespace for OAuthB. Campbell, H. TschofenigInformationalOctober 2012
6750The OAuth 2.0 Authorization Framework: Bearer Token UsageM. Jones, D. HardtProposed StandardOctober 2012
6749The OAuth 2.0 Authorization FrameworkD. Hardt, Ed.Proposed StandardOctober 2012
6712Internet X.509 Public Key Infrastructure -- HTTP Transfer for the Certificate Management Protocol (CMP)T. Kause, M. Peylo · obsoleted by RFC 9811Proposed StandardSeptember 2012
6698The DNS-Based Authentication of Named Entities (DANE) Transport Layer Security (TLS) Protocol: TLSAP. Hoffman, J. SchlyterProposed StandardAugust 2012
6697Handover Keying (HOKEY) Architecture DesignG. Zorn, Ed., Q. Wu, T. Taylor, Y. Nir, K. Hoeper, S. DecugisInformationalJuly 2012
6696EAP Extensions for the EAP Re-authentication Protocol (ERP)Z. Cao, B. He, Y. Shi, Q. Wu, Ed., G. Zorn, Ed.Proposed StandardJuly 2012
6685Expert Review for Incident Object Description Exchange Format (IODEF) Extensions in IANA XML RegistryB. Trammell · obsoleted by RFC 7970Proposed StandardJuly 2012
6684Guidelines and Template for Defining Extensions to the Incident Object Description Exchange Format (IODEF)B. TrammellInformationalJuly 2012
6680Generic Security Service Application Programming Interface (GSS-API) Naming ExtensionsN. Williams, L. Johansson, S. Hartman, S. JosefssonProposed StandardAugust 2012
6678Requirements for a Tunnel-Based Extensible Authentication Protocol (EAP) MethodK. Hoeper, S. Hanna, H. Zhou, J. Salowey, Ed.InformationalJuly 2012
6677Channel-Binding Support for Extensible Authentication Protocol (EAP) MethodsS. Hartman, Ed., T. Clancy, K. HoeperProposed StandardJuly 2012
6664S/MIME Capabilities for Public Key DefinitionsJ. SchaadInformationalJuly 2012
6649Deprecate DES, RC4-HMAC-EXP, and Other Weak Cryptographic Algorithms in KerberosL. Hornquist Astrand, T. YuBest Current PracticeJuly 2012
6630EAP Re-authentication Protocol Extensions for Authenticated Anticipatory Keying (ERP/AAK)Z. Cao, H. Deng, Q. Wu, G. Zorn, Ed.Proposed StandardJune 2012
6616A Simple Authentication and Security Layer (SASL) and Generic Security Service Application Program Interface (GSS-API) Mechanism for OpenIDE. Lear, H. Tschofenig, H. Mauldin, S. JosefssonProposed StandardMay 2012
6614Transport Layer Security (TLS) Encryption for RADIUSS. Winter, M. McCauley, S. Venaas, K. WierengaExperimentalMay 2012
6613RADIUS over TCPA. DeKokExperimentalMay 2012
6595A Simple Authentication and Security Layer (SASL) and GSS-API Mechanism for the Security Assertion Markup Language (SAML)K. Wierenga, E. Lear, S. JosefssonProposed StandardApril 2012
6560One-Time Password (OTP) Pre-AuthenticationG. RichardsProposed StandardApril 2012
6546Transport of Real-time Inter-network Defense (RID) Messages over HTTP/TLSB. TrammellProposed StandardApril 2012
6545Real-time Inter-network Defense (RID)K. MoriartyProposed StandardApril 2012
6542Kerberos Version 5 Generic Security Service Application Program Interface (GSS-API) Channel Binding Hash AgilityS. EmeryProposed StandardMarch 2012
6520Transport Layer Security (TLS) and Datagram Transport Layer Security (DTLS) Heartbeat ExtensionR. Seggelmann, M. Tuexen, M. WilliamsProposed StandardFebruary 2012
6448The Unencrypted Form of Kerberos 5 KRB-CRED MessageR. YountProposed StandardNovember 2011
6440The EAP Re-authentication Protocol (ERP) Local Domain Name DHCPv6 OptionG. Zorn, Q. Wu, Y. WangProposed StandardDecember 2011
6421Crypto-Agility Requirements for Remote Authentication Dial-In User Service (RADIUS)D. Nelson, Ed.InformationalNovember 2011
6407The Group Domain of InterpretationB. Weis, S. Rowles, T. Hardjono · obsoleted by RFC 9838Proposed StandardOctober 2011
6402Certificate Management over CMS (CMC) UpdatesJ. Schaad · obsoleted by RFC 10002, RFC 10003, RFC 10004Proposed StandardNovember 2011
6394Use Cases and Requirements for DNS-Based Authentication of Named Entities (DANE)R. BarnesInformationalOctober 2011
6347Datagram Transport Layer Security Version 1.2E. Rescorla, N. Modadugu · obsoleted by RFC 9147Proposed StandardJanuary 2012
6331Moving DIGEST-MD5 to HistoricA. MelnikovInformationalJuly 2011
6311Protocol Support for High Availability of IKEv2/IPsecR. Singh, Ed., G. Kalyani, Y. Nir, Y. Sheffer, D. ZhangProposed StandardJuly 2011
6290A Quick Crash Detection Method for the Internet Key Exchange Protocol (IKE)Y. Nir, Ed., D. Wierbowski, F. Detienne, P. SethiProposed StandardJune 2011
6277Online Certificate Status Protocol Algorithm AgilityS. Santesson, P. Hallam-Baker · obsoleted by RFC 6960Proposed StandardJune 2011
6251Using Kerberos Version 5 over the Transport Layer Security (TLS) ProtocolS. JosefssonInformationalMay 2011
6176Prohibiting Secure Sockets Layer (SSL) Version 2.0S. Turner, T. PolkProposed StandardMarch 2011
6170Internet X.509 Public Key Infrastructure -- Certificate ImageS. Santesson, R. Housley, S. Bajaj, L. Rosenthol · obsoleted by RFC 9399Proposed StandardMay 2011
6158RADIUS Design GuidelinesA. DeKok, Ed., G. WeberBest Current PracticeMarch 2011
6113A Generalized Framework for Kerberos Pre-AuthenticationS. Hartman, L. ZhuProposed StandardApril 2011
6112Anonymity Support for KerberosL. Zhu, P. Leach, S. Hartman · obsoleted by RFC 8062HistoricApril 2011
6111Additional Kerberos Naming ConstraintsL. ZhuProposed StandardApril 2011
6071IP Security (IPsec) and Internet Key Exchange (IKE) Document RoadmapS. Frankel, S. KrishnanInformationalFebruary 2011
6066Transport Layer Security (TLS) Extensions: Extension DefinitionsD. Eastlake 3rdProposed StandardJanuary 2011
6063Dynamic Symmetric Key Provisioning Protocol (DSKPP)A. Doherty, M. Pei, S. Machani, M. NystromProposed StandardDecember 2010
6054Using Counter Modes with Encapsulating Security Payload (ESP) and Authentication Header (AH) to Protect Group TrafficD. McGrew, B. WeisProposed StandardNovember 2010
6031Cryptographic Message Syntax (CMS) Symmetric Key Package Content TypeS. Turner, R. HousleyProposed StandardDecember 2010
6030Portable Symmetric Key Container (PSKC)P. Hoyer, M. Pei, S. MachaniProposed StandardOctober 2010
6027IPsec Cluster Problem StatementY. NirInformationalOctober 2010
6025ASN.1 TranslationC. Wallace, C. GardinerInformationalOctober 2010
6024Trust Anchor Management RequirementsR. Reddy, C. WallaceInformationalOctober 2010
6012Datagram Transport Layer Security (DTLS) Transport Mapping for SyslogJ. Salowey, T. Petch, R. Gerhards, H. FengProposed StandardOctober 2010
5998An Extension for EAP-Only Authentication in IKEv2P. Eronen, H. Tschofenig, Y. ShefferProposed StandardSeptember 2010
5997Use of Status-Server Packets in the Remote Authentication Dial In User Service (RADIUS) ProtocolA. DeKokInformationalAugust 2010
5996Internet Key Exchange Protocol Version 2 (IKEv2)C. Kaufman, P. Hoffman, Y. Nir, P. Eronen · obsoleted by RFC 7296Proposed StandardSeptember 2010
5990Use of the RSA-KEM Key Transport Algorithm in the Cryptographic Message Syntax (CMS)J. Randall, B. Kaliski, J. Brainard, S. Turner · obsoleted by RFC 9690Proposed StandardSeptember 2010
5934Trust Anchor Management Protocol (TAMP)R. Housley, S. Ashmore, C. WallaceProposed StandardAugust 2010
5930Using Advanced Encryption Standard Counter Mode (AES-CTR) with the Internet Key Exchange version 02 (IKEv2) ProtocolS. Shen, Y. Mao, NSS. MurthyInformationalJuly 2010
5914Trust Anchor FormatR. Housley, S. Ashmore, C. WallaceProposed StandardJune 2010
5913Clearance Attribute and Authority Clearance Constraints Certificate ExtensionS. Turner, S. ChokhaniProposed StandardJune 2010
5912New ASN.1 Modules for the Public Key Infrastructure Using X.509 (PKIX)P. Hoffman, J. SchaadInformationalJune 2010
5911New ASN.1 Modules for Cryptographic Message Syntax (CMS) and S/MIMEP. Hoffman, J. SchaadInformationalJune 2010
5879Heuristics for Detecting ESP-NULL PacketsT. Kivinen, D. McDonaldInformationalMay 2010
5877The application/pkix-attr-cert Media Type for Attribute CertificatesR. HousleyInformationalMay 2010
5868Problem Statement on the Cross-Realm Operation of KerberosS. Sakane, K. Kamada, S. Zrelli, M. IshiyamaInformationalMay 2010
5848Signed Syslog MessagesJ. Kelsey, J. Callas, A. ClemmProposed StandardMay 2010
5840Wrapped Encapsulating Security Payload (ESP) for Traffic VisibilityK. Grewal, G. Montenegro, M. BhatiaProposed StandardApril 2010
5836Extensible Authentication Protocol (EAP) Early Authentication Problem StatementY. Ohba, Ed., Q. Wu, Ed., G. Zorn, Ed.InformationalApril 2010
5816ESSCertIDv2 Update for RFC 3161S. Santesson, N. PopeProposed StandardApril 2010
5802Salted Challenge Response Authentication Mechanism (SCRAM) SASL and GSS-API MechanismsC. Newman, A. Menon-Sen, A. Melnikov, N. WilliamsProposed StandardJuly 2010
5801Using Generic Security Service Application Program Interface (GSS-API) Mechanisms in Simple Authentication and Security Layer (SASL): The GS2 Mechanism FamilyS. Josefsson, N. WilliamsProposed StandardJuly 2010
5793PB-TNC: A Posture Broker (PB) Protocol Compatible with Trusted Network Connect (TNC)R. Sahita, S. Hanna, R. Hurst, K. NarayanProposed StandardMarch 2010
5792PA-TNC: A Posture Attribute (PA) Protocol Compatible with Trusted Network Connect (TNC)P. Sangster, K. NarayanProposed StandardMarch 2010
5776Use of Timed Efficient Stream Loss-Tolerant Authentication (TESLA) in the Asynchronous Layered Coding (ALC) and NACK-Oriented Reliable Multicast (NORM) ProtocolsV. Roca, A. Francillon, S. FauriteExperimentalApril 2010
5758Internet X.509 Public Key Infrastructure: Additional Algorithms and Identifiers for DSA and ECDSAQ. Dang, S. Santesson, K. Moriarty, D. Brown, T. PolkProposed StandardJanuary 2010
5756Updates for RSAES-OAEP and RSASSA-PSS Algorithm ParametersS. Turner, D. Brown, K. Yiu, R. Housley, T. PolkProposed StandardJanuary 2010
5755An Internet Attribute Certificate Profile for AuthorizationS. Farrell, R. Housley, S. TurnerProposed StandardJanuary 2010
5754Using SHA2 Algorithms with Cryptographic Message SyntaxS. TurnerProposed StandardJanuary 2010
5753Use of Elliptic Curve Cryptography (ECC) Algorithms in Cryptographic Message Syntax (CMS)S. Turner, D. BrownInformationalJanuary 2010
5752Multiple Signatures in Cryptographic Message Syntax (CMS)S. Turner, J. SchaadProposed StandardJanuary 2010
5751Secure/Multipurpose Internet Mail Extensions (S/MIME) Version 3.2 Message SpecificationB. Ramsdell, S. Turner · obsoleted by RFC 8551Proposed StandardJanuary 2010
5750Secure/Multipurpose Internet Mail Extensions (S/MIME) Version 3.2 Certificate HandlingB. Ramsdell, S. Turner · obsoleted by RFC 8550Proposed StandardJanuary 2010
5749Distribution of EAP-Based Keys for Handover and Re-AuthenticationK. Hoeper, Ed., M. Nakhjiri, Y. Ohba, Ed.Proposed StandardMarch 2010
5746Transport Layer Security (TLS) Renegotiation Indication ExtensionE. Rescorla, M. Ray, S. Dispensa, N. OskovProposed StandardFebruary 2010
5739IPv6 Configuration in Internet Key Exchange Protocol Version 2 (IKEv2)P. Eronen, J. Laganier, C. MadsonExperimentalFebruary 2010
5723Internet Key Exchange Protocol Version 2 (IKEv2) Session ResumptionY. Sheffer, H. TschofenigProposed StandardJanuary 2010
5705Keying Material Exporters for Transport Layer Security (TLS)E. RescorlaProposed StandardMarch 2010
5697Other Certificates ExtensionS. FarrellExperimentalNovember 2009
5685Redirect Mechanism for the Internet Key Exchange Protocol Version 2 (IKEv2)V. Devarapalli, K. WenigerProposed StandardNovember 2009
5660IPsec Channels: Connection LatchingN. WilliamsProposed StandardOctober 2009
5653Generic Security Service API Version 2: Java Bindings UpdateM. Upadhyay, S. Malkani · obsoleted by RFC 8353Proposed StandardAugust 2009
5652Cryptographic Message Syntax (CMS)R. HousleyInternet StandardSeptember 2009
5636Traceable Anonymous CertificateS. Park, H. Park, Y. Won, J. Lee, S. KentExperimentalAugust 2009
5607Remote Authentication Dial-In User Service (RADIUS) Authorization for Network Access Server (NAS) ManagementD. Nelson, G. WeberProposed StandardJuly 2009
5588Generic Security Service Application Program Interface (GSS-API) Extension for Storing Delegated CredentialsN. WilliamsProposed StandardJuly 2009
5587Extended Generic Security Service Mechanism Inquiry APIsN. WilliamsProposed StandardJuly 2009
5554Clarifications and Extensions to the Generic Security Service Application Program Interface (GSS-API) for the Use of Channel BindingsN. WilliamsProposed StandardMay 2009
5489ECDHE_PSK Cipher Suites for Transport Layer Security (TLS)M. Badra, I. HajjehInformationalMarch 2009
5487Pre-Shared Key Cipher Suites for TLS with SHA-256/384 and AES Galois Counter ModeM. BadraProposed StandardMarch 2009
5480Elliptic Curve Cryptography Subject Public Key InformationS. Turner, D. Brown, K. Yiu, R. Housley, T. PolkProposed StandardMarch 2009
5469DES and IDEA Cipher Suites for Transport Layer Security (TLS)P. Eronen, Ed. · obsoleted by RFC 8996HistoricFebruary 2009
5433Extensible Authentication Protocol - Generalized Pre-Shared Key (EAP-GPSK) MethodT. Clancy, H. TschofenigProposed StandardFebruary 2009
5427Textual Conventions for Syslog ManagementG. KeeniProposed StandardMarch 2009
5426Transmission of Syslog Messages over UDPA. OkmianskiProposed StandardMarch 2009
5425Transport Layer Security (TLS) Transport Mapping for SyslogF. Miao, Ed., Y. Ma, Ed., J. Salowey, Ed.Proposed StandardMarch 2009
5424The Syslog ProtocolR. GerhardsProposed StandardMarch 2009
5409Using the Boneh-Franklin and Boneh-Boyen Identity-Based Encryption Algorithms with the Cryptographic Message Syntax (CMS)L. Martin, M. SchertlerInformationalJanuary 2009
5408Identity-Based Encryption Architecture and Supporting Data StructuresG. Appenzeller, L. Martin, M. SchertlerInformationalJanuary 2009
5387Problem and Applicability Statement for Better-Than-Nothing Security (BTNS)J. Touch, D. Black, Y. WangInformationalNovember 2008
5386Better-Than-Nothing Security: An Unauthenticated Mode of IPsecN. Williams, M. RichardsonProposed StandardNovember 2008
5374Multicast Extensions to the Security Architecture for the Internet ProtocolB. Weis, G. Gross, D. IgnjaticProposed StandardNovember 2008
5349Elliptic Curve Cryptography (ECC) Support for Public Key Cryptography for Initial Authentication in Kerberos (PKINIT)L. Zhu, K. Jaganathan, K. LauterInformationalSeptember 2008
5296EAP Extensions for EAP Re-authentication Protocol (ERP)V. Narayanan, L. Dondeti · obsoleted by RFC 6696Proposed StandardAugust 2008
5295Specification for the Derivation of Root Keys from an Extended Master Session Key (EMSK)J. Salowey, L. Dondeti, V. Narayanan, M. NakhjiriProposed StandardAugust 2008
5289TLS Elliptic Curve Cipher Suites with SHA-256/384 and AES Galois Counter Mode (GCM)E. RescorlaProposed StandardAugust 2008
5288AES Galois Counter Mode (GCM) Cipher Suites for TLSJ. Salowey, A. Choudhury, D. McGrewProposed StandardAugust 2008
5280Internet X.509 Public Key Infrastructure Certificate and Certificate Revocation List (CRL) ProfileD. Cooper, S. Santesson, S. Farrell, S. Boeyen, R. Housley, W. PolkProposed StandardMay 2008
5275CMS Symmetric Key Management and DistributionS. TurnerProposed StandardJune 2008
5274Certificate Management Messages over CMS (CMC): Compliance RequirementsJ. Schaad, M. Myers · obsoleted by RFC 10004Proposed StandardJune 2008
5273Certificate Management over CMS (CMC): Transport ProtocolsJ. Schaad, M. Myers · obsoleted by RFC 10003Proposed StandardJune 2008
5272Certificate Management over CMS (CMC)J. Schaad, M. Myers · obsoleted by RFC 10002Proposed StandardJune 2008
5246The Transport Layer Security (TLS) Protocol Version 1.2T. Dierks, E. Rescorla · obsoleted by RFC 8446, RFC 9846Proposed StandardAugust 2008
5216The EAP-TLS Authentication ProtocolD. Simon, B. Aboba, R. HurstProposed StandardMarch 2008
5209Network Endpoint Assessment (NEA): Overview and RequirementsP. Sangster, H. Khosravi, M. Mani, K. Narayan, J. TardoInformationalJune 2008
5197On the Applicability of Various Multimedia Internet KEYing (MIKEY) Modes and ExtensionsS. Fries, D. IgnjaticInformationalJune 2008
5179Generic Security Service Application Program Interface (GSS-API) Domain-Based Service Names Mapping for the Kerberos V GSS MechanismN. WilliamsProposed StandardMay 2008
5178Generic Security Service Application Program Interface (GSS-API) Internationalization and Domain-Based Service Names and Name TypeN. Williams, A. MelnikovProposed StandardMay 2008
5176Dynamic Authorization Extensions to Remote Authentication Dial In User Service (RADIUS)M. Chiba, G. Dommety, M. Eklund, D. Mitton, B. AbobaInformationalJanuary 2008
5169Handover Key Management and Re-Authentication Problem StatementT. Clancy, M. Nakhjiri, V. Narayanan, L. DondetiInformationalMarch 2008
5126CMS Advanced Electronic Signatures (CAdES)D. Pinkas, N. Pope, J. RossInformationalMarch 2008
5090RADIUS Extension for Digest AuthenticationB. Sterman, D. Sadolevsky, D. Schwartz, D. Williams, W. BeckProposed StandardFebruary 2008
5084Using AES-CCM and AES-GCM Authenticated Encryption in the Cryptographic Message Syntax (CMS)R. HousleyProposed StandardNovember 2007
5083Cryptographic Message Syntax (CMS) Authenticated-Enveloped-Data Content TypeR. HousleyProposed StandardNovember 2007
5081Using OpenPGP Keys for Transport Layer Security (TLS) AuthenticationN. Mavrogiannopoulos · obsoleted by RFC 6091ExperimentalNovember 2007
5080Common Remote Authentication Dial In User Service (RADIUS) Implementation Issues and Suggested FixesD. Nelson, A. DeKokProposed StandardDecember 2007
5070The Incident Object Description Exchange FormatR. Danyliw, J. Meijer, Y. Demchenko · obsoleted by RFC 7970Proposed StandardDecember 2007
5055Server-Based Certificate Validation Protocol (SCVP)T. Freeman, R. Housley, A. Malpani, D. Cooper, W. PolkProposed StandardDecember 2007
5054Using the Secure Remote Password (SRP) Protocol for TLS AuthenticationD. Taylor, T. Wu, N. Mavrogiannopoulos, T. PerrinInformationalNovember 2007
5035Enhanced Security Services (ESS) Update: Adding CertID Algorithm AgilityJ. SchaadProposed StandardAugust 2007
5021Extended Kerberos Version 5 Key Distribution Center (KDC) Exchanges over TCPS. JosefssonProposed StandardAugust 2007
5019The Lightweight Online Certificate Status Protocol (OCSP) Profile for High-Volume EnvironmentsA. Deacon, R. Hurst · obsoleted by RFC 9919Proposed StandardSeptember 2007
4985Internet X.509 Public Key Infrastructure Subject Alternative Name for Expression of Service NameS. SantessonProposed StandardAugust 2007
4945The Internet IP Security PKI Profile of IKEv1/ISAKMP, IKEv2, and PKIXB. KorverProposed StandardAugust 2007
4880OpenPGP Message FormatJ. Callas, L. Donnerhacke, H. Finney, D. Shaw, R. Thayer · obsoleted by RFC 9580Proposed StandardNovember 2007
4853Cryptographic Message Syntax (CMS) Multiple Signer ClarificationR. HousleyProposed StandardApril 2007
4849RADIUS Filter Rule AttributeP. Congdon, M. Sanchez, B. AbobaProposed StandardApril 2007
4819Secure Shell Public Key SubsystemJ. Galbraith, J. Van Dyke, J. BrightProposed StandardMarch 2007
4818RADIUS Delegated-IPv6-Prefix AttributeJ. Salowey, R. DromsProposed StandardApril 2007
4809Requirements for an IPsec Certificate Management ProfileC. Bonatti, Ed., S. Turner, Ed., G. Lebovitz, Ed.InformationalFebruary 2007
4785Pre-Shared Key (PSK) Ciphersuites with NULL Encryption for Transport Layer Security (TLS)U. Blumenthal, P. GoelProposed StandardJanuary 2007
4768Desired Enhancements to Generic Security Services Application Program Interface (GSS-API) Version 3 NamingS. HartmanInformationalDecember 2006
4767The Intrusion Detection Exchange Protocol (IDXP)B. Feinstein, G. MatthewsExperimentalMarch 2007
4766Intrusion Detection Message Exchange RequirementsM. Wood, M. ErlingerInformationalMarch 2007
4765The Intrusion Detection Message Exchange Format (IDMEF)H. Debar, D. Curry, B. FeinsteinExperimentalMarch 2007
4752The Kerberos V5 ("GSSAPI") Simple Authentication and Security Layer (SASL) MechanismA. Melnikov, Ed.Proposed StandardNovember 2006
4738MIKEY-RSA-R: An Additional Mode of Key Distribution in Multimedia Internet KEYing (MIKEY)D. Ignjatic, L. Dondeti, F. Audet, P. LinProposed StandardNovember 2006
4716The Secure Shell (SSH) Public Key File FormatJ. Galbraith, R. ThayerInformationalNovember 2006
4683Internet X.509 Public Key Infrastructure Subject Identification Method (SIM)J. Park, J. Lee, H. Lee, S. Park, T. PolkProposed StandardOctober 2006
4675RADIUS Attributes for Virtual LAN and Priority SupportP. Congdon, M. Sanchez, B. AbobaProposed StandardSeptember 2006
4673RADIUS Dynamic Authorization Server MIBS. De Cnodder, N. Jonnala, M. ChibaInformationalSeptember 2006
4672RADIUS Dynamic Authorization Client MIBS. De Cnodder, N. Jonnala, M. ChibaInformationalSeptember 2006
4671RADIUS Accounting Server MIB for IPv6D. NelsonInformationalAugust 2006
4670RADIUS Accounting Client MIB for IPv6D. NelsonInformationalAugust 2006
4669RADIUS Authentication Server MIB for IPv6D. NelsonProposed StandardAugust 2006
4668RADIUS Authentication Client MIB for IPv6D. NelsonProposed StandardAugust 2006
4650HMAC-Authenticated Diffie-Hellman for Multimedia Internet KEYing (MIKEY)M. EuchnerProposed StandardSeptember 2006
4630Update to DirectoryString Processing in the Internet X.509 Public Key Infrastructure Certificate and Certificate Revocation List (CRL) ProfileR. Housley, S. Santesson · obsoleted by RFC 5280Proposed StandardAugust 2006
4621Design of the IKEv2 Mobility and Multihoming (MOBIKE) ProtocolT. Kivinen, H. TschofenigInformationalAugust 2006
4616The PLAIN Simple Authentication and Security Layer (SASL) MechanismK. Zeilenga, Ed.Proposed StandardAugust 2006
4590RADIUS Extension for Digest AuthenticationB. Sterman, D. Sadolevsky, D. Schwartz, D. Williams, W. Beck · obsoleted by RFC 5090Proposed StandardJuly 2006
4563The Key ID Information Type for the General Extension Payload in Multimedia Internet KEYing (MIKEY)E. Carrara, V. Lehtovirta, K. NorrmanProposed StandardJune 2006
4557Online Certificate Status Protocol (OCSP) Support for Public Key Cryptography for Initial Authentication in Kerberos (PKINIT)L. Zhu, K. Jaganathan, N. WilliamsProposed StandardJune 2006
4556Public Key Cryptography for Initial Authentication in Kerberos (PKINIT)L. Zhu, B. TungProposed StandardJune 2006
4555IKEv2 Mobility and Multihoming Protocol (MOBIKE)P. EronenProposed StandardJune 2006
4537Kerberos Cryptosystem Negotiation ExtensionL. Zhu, P. Leach, K. JaganathanProposed StandardJune 2006
4535GSAKMP: Group Secure Association Key Management ProtocolH. Harney, U. Meth, A. Colegrove, G. GrossProposed StandardJune 2006
4534Group Security Policy Token v1A. Colegrove, H. HarneyProposed StandardJune 2006
4505Anonymous Simple Authentication and Security Layer (SASL) MechanismK. ZeilengaProposed StandardJune 2006
4492Elliptic Curve Cryptography (ECC) Cipher Suites for Transport Layer Security (TLS)S. Blake-Wilson, N. Bolyard, V. Gupta, C. Hawk, B. Moeller · obsoleted by RFC 8422InformationalMay 2006
4491Using the GOST R 34.10-94, GOST R 34.10-2001, and GOST R 34.11-94 Algorithms with the Internet X.509 Public Key Infrastructure Certificate and CRL ProfileS. Leontiev, Ed., D. Shefanovski, Ed.Proposed StandardMay 2006
4490Using the GOST 28147-89, GOST R 34.11-94, GOST R 34.10-94, and GOST R 34.10-2001 Algorithms with Cryptographic Message Syntax (CMS)S. Leontiev, Ed., G. Chudov, Ed.Proposed StandardMay 2006
4476Attribute Certificate (AC) Policies ExtensionC. Francis, D. PinkasProposed StandardMay 2006
4462Generic Security Service Application Program Interface (GSS-API) Authentication and Key Exchange for the Secure Shell (SSH) ProtocolJ. Hutzelman, J. Salowey, J. Galbraith, V. WelchProposed StandardMay 2006
4442Bootstrapping Timed Efficient Stream Loss-Tolerant Authentication (TESLA)S. Fries, H. TschofenigProposed StandardMarch 2006
4430Kerberized Internet Negotiation of Keys (KINK)S. Sakane, K. Kamada, M. Thomas, J. VilhuberProposed StandardMarch 2006
4422Simple Authentication and Security Layer (SASL)A. Melnikov, Ed., K. Zeilenga, Ed.Proposed StandardJune 2006
4419Diffie-Hellman Group Exchange for the Secure Shell (SSH) Transport Layer ProtocolM. Friedl, N. Provos, W. SimpsonProposed StandardMarch 2006
4402A Pseudo-Random Function (PRF) for the Kerberos V Generic Security Service Application Program Interface (GSS-API) MechanismN. Williams · obsoleted by RFC 7802HistoricFebruary 2006
4401A Pseudo-Random Function (PRF) API Extension for the Generic Security Service Application Program Interface (GSS-API)N. WilliamsProposed StandardFebruary 2006
4387Internet X.509 Public Key Infrastructure Operational Protocols: Certificate Store Access via HTTPP. Gutmann, Ed.Proposed StandardFebruary 2006
4386Internet X.509 Public Key Infrastructure Repository Locator ServiceS. Boeyen, P. Hallam-BakerExperimentalFebruary 2006
4383The Use of Timed Efficient Stream Loss-Tolerant Authentication (TESLA) in the Secure Real-time Transport Protocol (SRTP)M. Baugher, E. CarraraProposed StandardFebruary 2006
4372Chargeable User IdentityF. Adrangi, A. Lior, J. Korhonen, J. LoughneyProposed StandardJanuary 2006
4366Transport Layer Security (TLS) ExtensionsS. Blake-Wilson, M. Nystrom, D. Hopwood, J. Mikkelsen, T. Wright · obsoleted by RFC 5246, RFC 6066Proposed StandardApril 2006
4359The Use of RSA/SHA-1 Signatures within Encapsulating Security Payload (ESP) and Authentication Header (AH)B. WeisProposed StandardJanuary 2006
4346The Transport Layer Security (TLS) Protocol Version 1.1T. Dierks, E. Rescorla · obsoleted by RFC 5246HistoricApril 2006
4344The Secure Shell (SSH) Transport Layer Encryption ModesM. Bellare, T. Kohno, C. NamprempreProposed StandardJanuary 2006
4335The Secure Shell (SSH) Session Channel Break ExtensionJ. Galbraith, P. RemakerProposed StandardJanuary 2006
4334Certificate Extensions and Attributes Supporting Authentication in Point-to-Point Protocol (PPP) and Wireless Local Area Networks (WLAN)R. Housley, T. MooreProposed StandardFebruary 2006
4325Internet X.509 Public Key Infrastructure Authority Information Access Certificate Revocation List (CRL) ExtensionS. Santesson, R. Housley · obsoleted by RFC 5280Proposed StandardDecember 2005
4309Using Advanced Encryption Standard (AES) CCM Mode with IPsec Encapsulating Security Payload (ESP)R. HousleyProposed StandardDecember 2005
4308Cryptographic Suites for IPsecP. HoffmanProposed StandardDecember 2005
4307Cryptographic Algorithms for Use in the Internet Key Exchange Version 2 (IKEv2)J. Schiller · obsoleted by RFC 8247Proposed StandardDecember 2005
4306Internet Key Exchange (IKEv2) ProtocolC. Kaufman, Ed. · obsoleted by RFC 5996Proposed StandardDecember 2005
4305Cryptographic Algorithm Implementation Requirements for Encapsulating Security Payload (ESP) and Authentication Header (AH)D. Eastlake 3rd · obsoleted by RFC 4835Proposed StandardDecember 2005
4304Extended Sequence Number (ESN) Addendum to IPsec Domain of Interpretation (DOI) for Internet Security Association and Key Management Protocol (ISAKMP)S. KentProposed StandardDecember 2005
4303IP Encapsulating Security Payload (ESP)S. KentProposed StandardDecember 2005
4302IP Authentication HeaderS. KentProposed StandardDecember 2005
4301Security Architecture for the Internet ProtocolS. Kent, K. SeoProposed StandardDecember 2005
4282The Network Access IdentifierB. Aboba, M. Beadles, J. Arkko, P. Eronen · obsoleted by RFC 7542Proposed StandardDecember 2005
4279Pre-Shared Key Ciphersuites for Transport Layer Security (TLS)P. Eronen, Ed., H. Tschofenig, Ed.Proposed StandardDecember 2005
4262X.509 Certificate Extension for Secure/Multipurpose Internet Mail Extensions (S/MIME) CapabilitiesS. SantessonProposed StandardDecember 2005
4256Generic Message Exchange Authentication for the Secure Shell Protocol (SSH)F. Cusack, M. ForssenProposed StandardJanuary 2006
4255Using DNS to Securely Publish Secure Shell (SSH) Key FingerprintsJ. Schlyter, W. GriffinProposed StandardJanuary 2006
4254The Secure Shell (SSH) Connection ProtocolT. Ylonen, C. Lonvick, Ed.Proposed StandardJanuary 2006
4253The Secure Shell (SSH) Transport Layer ProtocolT. Ylonen, C. Lonvick, Ed.Proposed StandardJanuary 2006
4252The Secure Shell (SSH) Authentication ProtocolT. Ylonen, C. Lonvick, Ed.Proposed StandardJanuary 2006
4251The Secure Shell (SSH) Protocol ArchitectureT. Ylonen, C. Lonvick, Ed.Proposed StandardJanuary 2006
4250The Secure Shell (SSH) Protocol Assigned NumbersS. Lehtinen, C. Lonvick, Ed.Proposed StandardJanuary 2006
4211Internet X.509 Public Key Infrastructure Certificate Request Message Format (CRMF)J. SchaadProposed StandardSeptember 2005
4210Internet X.509 Public Key Infrastructure Certificate Management Protocol (CMP)C. Adams, S. Farrell, T. Kause, T. Mononen · obsoleted by RFC 9810Proposed StandardSeptember 2005
4178The Simple and Protected Generic Security Service Application Program Interface (GSS-API) Negotiation MechanismL. Zhu, P. Leach, K. Jaganathan, W. IngersollProposed StandardOctober 2005
4158Internet X.509 Public Key Infrastructure: Certification Path BuildingM. Cooper, Y. Dzambasow, P. Hesse, S. Joseph, R. NicholasInformationalSeptember 2005
4134Examples of S/MIME MessagesP. Hoffman, Ed.InformationalJuly 2005
4132Addition of Camellia Cipher Suites to Transport Layer Security (TLS)S. Moriai, A. Kato, M. Kanda · obsoleted by RFC 5932Proposed StandardJuly 2005
4121The Kerberos Version 5 Generic Security Service Application Program Interface (GSS-API) Mechanism: Version 2L. Zhu, K. Jaganathan, S. HartmanProposed StandardJuly 2005
4120The Kerberos Network Authentication Service (V5)C. Neuman, T. Yu, S. Hartman, K. RaeburnProposed StandardJuly 2005
4106The Use of Galois/Counter Mode (GCM) in IPsec Encapsulating Security Payload (ESP)J. Viega, D. McGrewProposed StandardJune 2005
4082Timed Efficient Stream Loss-Tolerant Authentication (TESLA): Multicast Source Authentication Transform IntroductionA. Perrig, D. Song, R. Canetti, J. D. Tygar, B. BriscoeInformationalJune 2005
4059Internet X.509 Public Key Infrastructure Warranty Certificate ExtensionD. Linsenbardt, S. Pontius, A. SturgeonInformationalMay 2005
4056Use of the RSASSA-PSS Signature Algorithm in Cryptographic Message Syntax (CMS)J. SchaadProposed StandardJune 2005
4055Additional Algorithms and Identifiers for RSA Cryptography for use in the Internet X.509 Public Key Infrastructure Certificate and Certificate Revocation List (CRL) ProfileJ. Schaad, B. Kaliski, R. HousleyProposed StandardJune 2005
4046Multicast Security (MSEC) Group Key Management ArchitectureM. Baugher, R. Canetti, L. Dondeti, F. LindholmInformationalMay 2005
4043Internet X.509 Public Key Infrastructure Permanent IdentifierD. Pinkas, T. GindinProposed StandardMay 2005
4025A Method for Storing IPsec Keying Material in DNSM. RichardsonProposed StandardMarch 2005
4013SASLprep: Stringprep Profile for User Names and PasswordsK. Zeilenga · obsoleted by RFC 7613Proposed StandardMarch 2005
4010Use of the SEED Encryption Algorithm in Cryptographic Message Syntax (CMS)J. Park, S. Lee, J. Kim, J. LeeProposed StandardFebruary 2005
3962Advanced Encryption Standard (AES) Encryption for Kerberos 5K. RaeburnProposed StandardFebruary 2005
3961Encryption and Checksum Specifications for Kerberos 5K. RaeburnProposed StandardFebruary 2005
3948UDP Encapsulation of IPsec ESP PacketsA. Huttunen, B. Swander, V. Volpe, L. DiBurro, M. StenbergProposed StandardJanuary 2005
3947Negotiation of NAT-Traversal in the IKET. Kivinen, B. Swander, A. Huttunen, V. VolpeProposed StandardJanuary 2005
3874A 224-bit One-way Hash Function: SHA-224R. HousleyInformationalSeptember 2004
3855Transporting Secure/Multipurpose Internet Mail Extensions (S/MIME) Objects in X.400P. Hoffman, C. BonattiProposed StandardJuly 2004
3854Securing X.400 Content with Secure/Multipurpose Internet Mail Extensions (S/MIME)P. Hoffman, C. Bonatti, A. EggenProposed StandardJuly 2004
3852Cryptographic Message Syntax (CMS)R. Housley · obsoleted by RFC 5652Proposed StandardJuly 2004
3851Secure/Multipurpose Internet Mail Extensions (S/MIME) Version 3.1 Message SpecificationB. Ramsdell, Ed. · obsoleted by RFC 5751Proposed StandardJuly 2004
3850Secure/Multipurpose Internet Mail Extensions (S/MIME) Version 3.1 Certificate HandlingB. Ramsdell, Ed. · obsoleted by RFC 5750Proposed StandardJuly 2004
3830MIKEY: Multimedia Internet KEYingJ. Arkko, E. Carrara, F. Lindholm, M. Naslund, K. NorrmanProposed StandardAugust 2004
3820Internet X.509 Public Key Infrastructure (PKI) Proxy Certificate ProfileS. Tuecke, V. Welch, D. Engert, L. Pearlman, M. ThompsonProposed StandardJune 2004
3779X.509 Extensions for IP Addresses and AS IdentifiersC. Lynn, S. Kent, K. SeoProposed StandardJune 2004
3770Certificate Extensions and Attributes Supporting Authentication in Point-to-Point Protocol (PPP) and Wireless Local Area Networks (WLAN)R. Housley, T. Moore · obsoleted by RFC 4334Proposed StandardMay 2004
3767Securely Available Credentials ProtocolS. Farrell, Ed.Proposed StandardJune 2004
3760Securely Available Credentials (SACRED) - Credential Server FrameworkD. Gustafson, M. Just, M. NystromInformationalApril 2004
3749Transport Layer Security Protocol Compression MethodsS. HollenbeckProposed StandardMay 2004
3741Exclusive XML Canonicalization, Version 1.0J. Boyer, D. Eastlake 3rd, J. ReagleInformationalMarch 2004
3740The Multicast Group Security ArchitectureT. Hardjono, B. WeisInformationalMarch 2004
3739Internet X.509 Public Key Infrastructure: Qualified Certificates ProfileS. Santesson, M. Nystrom, T. PolkProposed StandardMarch 2004
3715IPsec-Network Address Translation (NAT) Compatibility RequirementsB. Aboba, W. DixonInformationalMarch 2004
3709Internet X.509 Public Key Infrastructure: Logotypes in X.509 CertificatesS. Santesson, R. Housley, T. Freeman · obsoleted by RFC 9399Proposed StandardFebruary 2004
3706A Traffic-Based Method of Detecting Dead Internet Key Exchange (IKE) PeersG. Huang, S. Beaulieu, D. RochefortInformationalFebruary 2004
3686Using Advanced Encryption Standard (AES) Counter Mode With IPsec Encapsulating Security Payload (ESP)R. HousleyProposed StandardJanuary 2004
3664The AES-XCBC-PRF-128 Algorithm for the Internet Key Exchange Protocol (IKE)P. Hoffman · obsoleted by RFC 4434Proposed StandardJanuary 2004
3657Use of the Camellia Encryption Algorithm in Cryptographic Message Syntax (CMS)S. Moriai, A. KatoProposed StandardJanuary 2004
3653XML-Signature XPath Filter 2.0J. Boyer, M. Hughes, J. ReagleInformationalDecember 2003
3647Internet X.509 Public Key Infrastructure Certificate Policy and Certification Practices FrameworkS. Chokhani, W. Ford, R. Sabett, C. Merrill, S. WuInformationalNovember 2003
3628Policy Requirements for Time-Stamping Authorities (TSAs)D. Pinkas, N. Pope, J. RossInformationalNovember 2003
3620The TUNNEL ProfileD. NewProposed StandardOctober 2003
3602The AES-CBC Cipher Algorithm and Its Use with IPsecS. Frankel, R. Glenn, S. KellyProposed StandardSeptember 2003
3586IP Security Policy (IPSP) RequirementsM. Blaze, A. Keromytis, M. Richardson, L. SanchezProposed StandardAugust 2003
3585IPsec Configuration Policy Information ModelJ. Jason, L. Rafalow, E. VynckeProposed StandardAugust 2003
3566The AES-XCBC-MAC-96 Algorithm and Its Use With IPsecS. Frankel, H. HerbertProposed StandardSeptember 2003
3565Use of the Advanced Encryption Standard (AES) Encryption Algorithm in Cryptographic Message Syntax (CMS)J. SchaadProposed StandardJuly 2003
3560Use of the RSAES-OAEP Key Transport Algorithm in Cryptographic Message Syntax (CMS)R. HousleyProposed StandardJuly 2003
3554On the Use of Stream Control Transmission Protocol (SCTP) with IPsecS. Bellovin, J. Ioannidis, A. Keromytis, R. StewartProposed StandardJuly 2003
3547The Group Domain of InterpretationM. Baugher, B. Weis, T. Hardjono, H. Harney · obsoleted by RFC 6407Proposed StandardJuly 2003
3546Transport Layer Security (TLS) ExtensionsS. Blake-Wilson, M. Nystrom, D. Hopwood, J. Mikkelsen, T. Wright · obsoleted by RFC 4366Proposed StandardJune 2003
3537Wrapping a Hashed Message Authentication Code (HMAC) key with a Triple-Data Encryption Standard (DES) Key or an Advanced Encryption Standard (AES) KeyJ. Schaad, R. HousleyProposed StandardMay 2003
3526More Modular Exponential (MODP) Diffie-Hellman groups for Internet Key Exchange (IKE)T. Kivinen, M. KojoProposed StandardMay 2003
3457Requirements for IPsec Remote Access ScenariosS. Kelly, S. RamamoorthiInformationalJanuary 2003
3456Dynamic Host Configuration Protocol (DHCPv4) Configuration of IPsec Tunnel ModeB. Patel, B. Aboba, S. Kelly, V. GuptaProposed StandardJanuary 2003
3394Advanced Encryption Standard (AES) Key Wrap AlgorithmJ. Schaad, R. HousleyInformationalOctober 2002
3379Delegated Path Validation and Delegated Path Discovery Protocol RequirementsD. Pinkas, R. HousleyInformationalSeptember 2002
3370Cryptographic Message Syntax (CMS) AlgorithmsR. HousleyProposed StandardSeptember 2002
3369Cryptographic Message Syntax (CMS)R. Housley · obsoleted by RFC 3852Proposed StandardSeptember 2002
3281An Internet Attribute Certificate Profile for AuthorizationS. Farrell, R. Housley · obsoleted by RFC 5755Proposed StandardMay 2002
3280Internet X.509 Public Key Infrastructure Certificate and Certificate Revocation List (CRL) ProfileR. Housley, W. Polk, W. Ford, D. Solo · obsoleted by RFC 5280Proposed StandardMay 2002
3279Algorithms and Identifiers for the Internet X.509 Public Key Infrastructure Certificate and Certificate Revocation List (CRL) ProfileL. Bassham, W. Polk, R. HousleyProposed StandardMay 2002
3278Use of Elliptic Curve Cryptography (ECC) Algorithms in Cryptographic Message Syntax (CMS)S. Blake-Wilson, D. Brown, P. Lambert · obsoleted by RFC 5753InformationalMay 2002
3275(Extensible Markup Language) XML-Signature Syntax and ProcessingD. Eastlake 3rd, J. Reagle, D. SoloDraft StandardMarch 2002
3274Compressed Data Content Type for Cryptographic Message Syntax (CMS)P. GutmannProposed StandardJune 2002
3268Advanced Encryption Standard (AES) Ciphersuites for Transport Layer Security (TLS)P. Chown · obsoleted by RFC 5246Proposed StandardJuly 2002
3218Preventing the Million Message Attack on Cryptographic Message SyntaxE. RescorlaInformationalJanuary 2002
3217Triple-DES and RC2 Key WrappingR. HousleyInformationalDecember 2001
3211Password-based Encryption for CMSP. Gutmann · obsoleted by RFC 3369, RFC 3370Proposed StandardDecember 2001
3195Reliable Delivery for syslogD. New, M. RoseProposed StandardNovember 2001
3185Reuse of CMS Content Encryption KeysS. Farrell, S. TurnerProposed StandardOctober 2001
3183Domain Security Services using S/MIMET. Dean, W. OttawayExperimentalOctober 2001
3164The BSD Syslog ProtocolC. Lonvick · obsoleted by RFC 5424InformationalAugust 2001
3161Internet X.509 Public Key Infrastructure Time-Stamp Protocol (TSP)C. Adams, P. Cain, D. Pinkas, R. ZuccheratoProposed StandardAugust 2001
3157Securely Available Credentials - RequirementsA. Arsenault, S. FarrellInformationalAugust 2001
3156MIME Security with OpenPGPM. Elkins, D. Del Torto, R. Levien, T. RoesslerProposed StandardAugust 2001
3129Requirements for Kerberized Internet Negotiation of KeysM. ThomasInformationalJune 2001
3126Electronic Signature Formats for long term electronic signaturesD. Pinkas, J. Ross, N. Pope · obsoleted by RFC 5126InformationalSeptember 2001
3125Electronic Signature PoliciesJ. Ross, D. Pinkas, N. PopeExperimentalSeptember 2001
3114Implementing Company Classification Policy with the S/MIME Security LabelW. NicollsInformationalMay 2002
3076Canonical XML Version 1.0J. BoyerInformationalMarch 2001
3075XML-Signature Syntax and ProcessingD. Eastlake 3rd, J. Reagle, D. Solo · obsoleted by RFC 3275Proposed StandardMarch 2001
3058Use of the IDEA Encryption Algorithm in CMSS. Teiwes, P. Hartmann, D. KuenziInformationalFebruary 2001
3039Internet X.509 Public Key Infrastructure Qualified Certificates ProfileS. Santesson, W. Polk, P. Barzin, M. Nystrom · obsoleted by RFC 3739Proposed StandardJanuary 2001
3029Internet X.509 Public Key Infrastructure Data Validation and Certification Server ProtocolsC. Adams, P. Sylvester, M. Zolotarev, R. ZuccheratoExperimentalFebruary 2001
2984Use of the CAST-128 Encryption Algorithm in CMSC. AdamsProposed StandardOctober 2000
2876Use of the KEA and SKIPJACK Algorithms in CMSJ. PawlingInformationalJuly 2000
2875Diffie-Hellman Proof-of-Possession AlgorithmsH. Prafullchandra, J. Schaad · obsoleted by RFC 6955Proposed StandardJuly 2000
2857The Use of HMAC-RIPEMD-160-96 within ESP and AHA. Keromytis, N. ProvosProposed StandardJune 2000
2853Generic Security Service API Version 2 : Java BindingsJ. Kabat, M. Upadhyay · obsoleted by RFC 5653Proposed StandardJune 2000
2847LIPKEY - A Low Infrastructure Public Key Mechanism Using SPKMM. EislerProposed StandardJune 2000
2818HTTP Over TLSE. Rescorla · obsoleted by RFC 9110InformationalMay 2000
2817Upgrading to TLS Within HTTP/1.1R. Khare, S. LawrenceProposed StandardMay 2000
2807XML Signature RequirementsJ. ReagleInformationalJuly 2000
2797Certificate Management Messages over CMSM. Myers, X. Liu, J. Schaad, J. Weinstein · obsoleted by RFC 5272Proposed StandardApril 2000
2785Methods for Avoiding the "Small-Subgroup" Attacks on the Diffie-Hellman Key Agreement Method for S/MIMER. ZuccheratoInformationalMarch 2000
2773Encryption using KEA and SKIPJACKR. Housley, P. Yee, W. NaceExperimentalFebruary 2000
2744Generic Security Service API Version 2 : C-bindingsJ. WrayProposed StandardJanuary 2000
2743Generic Security Service Application Program Interface Version 2, Update 1J. LinnProposed StandardJanuary 2000
2712Addition of Kerberos Cipher Suites to Transport Layer Security (TLS)A. Medvinsky, M. HurProposed StandardOctober 1999
2693SPKI Certificate TheoryC. Ellison, B. Frantz, B. Lampson, R. Rivest, B. Thomas, T. YlonenExperimentalSeptember 1999
2692SPKI RequirementsC. EllisonExperimentalSeptember 1999
2660The Secure HyperText Transfer ProtocolE. Rescorla, A. SchiffmanHistoricAugust 1999
2659Security Extensions For HTMLE. Rescorla, A. SchiffmanExperimentalAugust 1999
2634Enhanced Security Services for S/MIMEP. Hoffman, Ed.Proposed StandardJune 1999
2633S/MIME Version 3 Message SpecificationB. Ramsdell, Ed. · obsoleted by RFC 3851Proposed StandardJune 1999
2632S/MIME Version 3 Certificate HandlingB. Ramsdell, Ed. · obsoleted by RFC 3850Proposed StandardJune 1999
2631Diffie-Hellman Key Agreement MethodE. RescorlaProposed StandardJune 1999
2630Cryptographic Message SyntaxR. Housley · obsoleted by RFC 3369, RFC 3370Proposed StandardJune 1999
2587Internet X.509 Public Key Infrastructure LDAPv2 SchemaS. Boeyen, T. Howes, P. Richard · obsoleted by RFC 4523Proposed StandardJune 1999
2585Internet X.509 Public Key Infrastructure Operational Protocols: FTP and HTTPR. Housley, P. HoffmanProposed StandardMay 1999
2560X.509 Internet Public Key Infrastructure Online Certificate Status Protocol - OCSPM. Myers, R. Ankney, A. Malpani, S. Galperin, C. Adams · obsoleted by RFC 6960Proposed StandardJune 1999
2559Internet X.509 Public Key Infrastructure Operational Protocols - LDAPv2S. Boeyen, T. Howes, P. Richard · obsoleted by RFC 3494HistoricApril 1999
2541DNS Security Operational ConsiderationsD. Eastlake 3rd · obsoleted by RFC 4641InformationalMarch 1999
2540Detached Domain Name System (DNS) InformationD. Eastlake 3rdExperimentalMarch 1999
2539Storage of Diffie-Hellman Keys in the Domain Name System (DNS)D. Eastlake 3rdProposed StandardMarch 1999
2538Storing Certificates in the Domain Name System (DNS)D. Eastlake 3rd, O. Gudmundsson · obsoleted by RFC 4398Proposed StandardMarch 1999
2537RSA/MD5 KEYs and SIGs in the Domain Name System (DNS)D. Eastlake 3rd · obsoleted by RFC 3110Proposed StandardMarch 1999
2536DSA KEYs and SIGs in the Domain Name System (DNS)D. Eastlake 3rdProposed StandardMarch 1999
2535Domain Name System Security ExtensionsD. Eastlake 3rd · obsoleted by RFC 4033, RFC 4034, RFC 4035Proposed StandardMarch 1999
2528Internet X.509 Public Key Infrastructure Representation of Key Exchange Algorithm (KEA) Keys in Internet X.509 Public Key Infrastructure CertificatesR. Housley, W. PolkInformationalMarch 1999
2527Internet X.509 Public Key Infrastructure Certificate Policy and Certification Practices FrameworkS. Chokhani, W. Ford · obsoleted by RFC 3647InformationalMarch 1999
2511Internet X.509 Certificate Request Message FormatM. Myers, C. Adams, D. Solo, D. Kemp · obsoleted by RFC 4211Proposed StandardMarch 1999
2510Internet X.509 Public Key Infrastructure Certificate Management ProtocolsC. Adams, S. Farrell · obsoleted by RFC 4210Proposed StandardMarch 1999
2479Independent Data Unit Protection Generic Security Service Application Program Interface (IDUP-GSS-API)C. AdamsInformationalDecember 1998
2478The Simple and Protected GSS-API Negotiation MechanismE. Baize, D. Pinkas · obsoleted by RFC 4178Proposed StandardDecember 1998
2459Internet X.509 Public Key Infrastructure Certificate and CRL ProfileR. Housley, W. Ford, W. Polk, D. Solo · obsoleted by RFC 3280Proposed StandardJanuary 1999
2451The ESP CBC-Mode Cipher AlgorithmsR. Pereira, R. AdamsProposed StandardNovember 1998
2444The One-Time-Password SASL MechanismC. NewmanProposed StandardOctober 1998
2440OpenPGP Message FormatJ. Callas, L. Donnerhacke, H. Finney, R. Thayer · obsoleted by RFC 4880Proposed StandardNovember 1998
2412The OAKLEY Key Determination ProtocolH. OrmanInformationalNovember 1998
2411IP Security Document RoadmapR. Thayer, N. Doraswamy, R. Glenn · obsoleted by RFC 6071InformationalNovember 1998
2410The NULL Encryption Algorithm and Its Use With IPsecR. Glenn, S. KentProposed StandardNovember 1998
2409The Internet Key Exchange (IKE)D. Harkins, D. Carrel · obsoleted by RFC 4306HistoricNovember 1998
2408Internet Security Association and Key Management Protocol (ISAKMP)D. Maughan, M. Schertler, M. Schneider, J. Turner · obsoleted by RFC 4306HistoricNovember 1998
2407The Internet IP Security Domain of Interpretation for ISAKMPD. Piper · obsoleted by RFC 4306HistoricNovember 1998
2406IP Encapsulating Security Payload (ESP)S. Kent, R. Atkinson · obsoleted by RFC 4303, RFC 4305Proposed StandardNovember 1998
2405The ESP DES-CBC Cipher Algorithm With Explicit IVC. Madson, N. DoraswamyProposed StandardNovember 1998
2404The Use of HMAC-SHA-1-96 within ESP and AHC. Madson, R. GlennProposed StandardNovember 1998
2403The Use of HMAC-MD5-96 within ESP and AHC. Madson, R. GlennProposed StandardNovember 1998
2402IP Authentication HeaderS. Kent, R. Atkinson · obsoleted by RFC 4302, RFC 4305Proposed StandardNovember 1998
2401Security Architecture for the Internet ProtocolS. Kent, R. Atkinson · obsoleted by RFC 4301Proposed StandardNovember 1998
2289A One-Time Password SystemN. Haller, C. Metz, P. Nesser, M. StrawInternet StandardFebruary 1998
2246The TLS Protocol Version 1.0T. Dierks, C. Allen · obsoleted by RFC 4346HistoricJanuary 1999
2243OTP Extended ResponsesC. MetzProposed StandardNovember 1997
2228FTP Security ExtensionsM. Horowitz, S. LuntProposed StandardOctober 1997
2137Secure Domain Name System Dynamic UpdateD. Eastlake 3rd · obsoleted by RFC 3007Proposed StandardApril 1997
2104HMAC: Keyed-Hashing for Message AuthenticationH. Krawczyk, M. Bellare, R. CanettiInformationalFebruary 1997
2085HMAC-MD5 IP Authentication with Replay PreventionM. Oehler, R. GlennProposed StandardFebruary 1997
2084Considerations for Web Transaction SecurityG. Bossert, S. Cooper, W. DrummondInformationalJanuary 1997
2078Generic Security Service Application Program Interface, Version 2J. Linn · obsoleted by RFC 2743Proposed StandardJanuary 1997
2065Domain Name System Security ExtensionsD. Eastlake 3rd, C. Kaufman · obsoleted by RFC 2535Proposed StandardJanuary 1997
2025The Simple Public-Key GSS-API Mechanism (SPKM)C. AdamsProposed StandardOctober 1996
1964The Kerberos Version 5 GSS-API MechanismJ. LinnProposed StandardJune 1996
1961GSS-API Authentication Method for SOCKS Version 5P. McMahonProposed StandardJune 1996
1938A One-Time Password SystemN. Haller, C. Metz · obsoleted by RFC 2289Proposed StandardMay 1996
1929Username/Password Authentication for SOCKS V5M. LeechProposed StandardMarch 1996
1928SOCKS Protocol Version 5M. Leech, M. Ganis, Y. Lee, R. Kuris, D. Koblas, L. JonesProposed StandardMarch 1996
1848MIME Object Security ServicesS. Crocker, N. Freed, J. Galvin, S. MurphyHistoricOctober 1995
1847Security Multiparts for MIME: Multipart/Signed and Multipart/EncryptedJ. Galvin, S. Murphy, S. Crocker, N. FreedProposed StandardOctober 1995
1829The ESP DES-CBC TransformP. Karn, P. Metzger, W. SimpsonProposed StandardAugust 1995
1828IP Authentication using Keyed MD5P. Metzger, W. SimpsonHistoricAugust 1995
1827IP Encapsulating Security Payload (ESP)R. Atkinson · obsoleted by RFC 2406Proposed StandardAugust 1995
1826IP Authentication HeaderR. Atkinson · obsoleted by RFC 2402Proposed StandardAugust 1995
1825Security Architecture for the Internet ProtocolR. Atkinson · obsoleted by RFC 2401Proposed StandardAugust 1995
1510The Kerberos Network Authentication Service (V5)J. Kohl, C. Neuman · obsoleted by RFC 4120, RFC 6649HistoricSeptember 1993
1509Generic Security Service API : C-bindingsJ. Wray · obsoleted by RFC 2744Proposed StandardSeptember 1993
1508Generic Security Service Application Program InterfaceJ. Linn · obsoleted by RFC 2078Proposed StandardSeptember 1993
1507DASS - Distributed Authentication Security ServiceC. KaufmanExperimentalSeptember 1993
1447Party MIB for version 2 of the Simple Network Management Protocol (SNMPv2)K. McCloghrie, J. GalvinHistoricApril 1993
1446Security Protocols for version 2 of the Simple Network Management Protocol (SNMPv2)J. Galvin, K. McCloghrieHistoricApril 1993
1445Administrative Model for version 2 of the Simple Network Management Protocol (SNMPv2)J. Galvin, K. McCloghrieHistoricApril 1993
1424Privacy Enhancement for Internet Electronic Mail: Part IV: Key Certification and Related ServicesB. KaliskiHistoricFebruary 1993
1423Privacy Enhancement for Internet Electronic Mail: Part III: Algorithms, Modes, and IdentifiersD. BalensonHistoricFebruary 1993
1422Privacy Enhancement for Internet Electronic Mail: Part II: Certificate-Based Key ManagementS. KentHistoricFebruary 1993
1421Privacy Enhancement for Internet Electronic Mail: Part I: Message Encryption and Authentication ProceduresJ. LinnHistoricFebruary 1993
1414Identification MIBM. St. Johns, M. RoseHistoricFebruary 1993
1413Identification ProtocolM. St. JohnsProposed StandardFebruary 1993
1353Definitions of Managed Objects for Administration of SNMP PartiesK. McCloghrie, J. Davin, J. GalvinHistoricJuly 1992
1352SNMP Security ProtocolsJ. Galvin, K. McCloghrie, J. DavinHistoricJuly 1992
1351SNMP Administrative ModelJ. Davin, J. Galvin, K. McCloghrieHistoricJuly 1992
1321The MD5 Message-Digest AlgorithmR. RivestInformationalApril 1992
1320The MD4 Message-Digest AlgorithmR. Rivest · obsoleted by RFC 6150HistoricApril 1992
1319The MD2 Message-Digest AlgorithmB. Kaliski · obsoleted by RFC 6149HistoricApril 1992
1281Guidelines for the Secure Operation of the InternetR. Pethia, S. Crocker, B. FraserInformationalNovember 1991