| 10042 | Post-Quantum/Traditional Hybrid Key Exchange with the Module-Lattice-Based Key-Encapsulation Mechanism for Use in SSHP. Kampanakis, D. Stebila, T. Hansen | Informational | August 2026 |
| 10031 | Media Access Control (MAC) Addresses in X.509 CertificatesR. Housley, C. Bonnell, J. Mandel, T. Okubo, M. StJohns | Proposed Standard | August 2026 |
| 10027 | Best Current Practice for Security of Cross-Device FlowsP. Kasselman, D. Fett, F. Skokan | Best Current Practice | August 2026 |
| 10024 | Post-Quantum Traditional (PQ/T) Hybrid Key Agreement Mechanisms for TLS 1.3K. Kwiatkowski, P. Kampanakis, B. E. Westerbaan, D. Stebila | Proposed Standard | August 2026 |
| 10017 | OAuth 2.0 for Browser-Based ApplicationsA. Parecki, P. De Ryck, D. Waite | Best Current Practice | August 2026 |
| 10015 | Deprecating Obsolete Key Exchange Methods in TLS 1.2 and DTLS 1.2N. Aviram | Proposed Standard | July 2026 |
| 10013 | Entity Attestation Token (EAT) Measured ComponentS. Frost, T. Fossati, H. Tschofenig, H. Birkholz | Proposed Standard | July 2026 |
| 10007 | Clarification to Processing Key Usage Values During Certificate Revocation List (CRL) ValidationC. Bonnell, T. Ito, T. Okubo | Proposed Standard | June 2026 |
| 10004 | Certificate Management over CMS (CMC): Compliance RequirementsJ. Mandel, Ed., S. Turner, Ed. | Proposed Standard | July 2026 |
| 10003 | Certificate Management over CMS (CMC): Transport ProtocolsJ. Mandel, Ed., S. Turner, Ed. | Proposed Standard | July 2026 |
| 10002 | Certificate Management over CMS (CMC)J. Mandel, Ed., S. Turner, Ed. | Proposed Standard | July 2026 |
| 9999 | Remote ATtestation procedureS (RATS) Conceptual Message Wrapper (CMW)H. Birkholz, N. Smith, T. Fossati, H. Tschofenig | Proposed Standard | July 2026 |
| 9995 | CBOR Object Signing and Encryption (COSE) Hash EnvelopeO. Steele, S. Lasker, H. Birkholz | Proposed Standard | July 2026 |
| 9987 | Secure Shell (SSH) Agent ProtocolD. Miller | Proposed Standard | May 2026 |
| 9980 | Post-Quantum Cryptography in OpenPGPS. Kousidis, J. Roth, F. Strenzke, A. Wussler | Proposed Standard | June 2026 |
| 9973 | TLS 1.3 Extension for Using Certificates with an External Pre-Shared KeyR. Housley | Proposed Standard | July 2026 |
| 9967 | System for Cross-Domain Identity Management (SCIM) Profile for Security Event Tokens (SETs)P. Hunt, Ed., N. Cam-Winget, M. Kiser, J. Schreiber | Proposed Standard | May 2026 |
| 9966 | Bootstrapped TLS Authentication with Proof of KnowledgeO. Friel, D. Harkins | Proposed Standard | May 2026 |
| 9965 | The eap.arpa. Domain and Extensible Authentication Protocol (EAP) ProvisioningA. DeKok | Proposed Standard | May 2026 |
| 9964 | ML-DSA for JSON Object Signing and Encryption (JOSE) and CBOR Object Signing and Encryption (COSE)M. Prorock, O. Steele | Proposed Standard | May 2026 |
| 9963 | Legacy RSASSA-PKCS1-v1_5 Code Points for TLS 1.3D. Benjamin, A. Popov | Proposed Standard | April 2026 |
| 9958 | Post-Quantum Cryptography for EngineersA. Banerjee, T. Reddy.K, D. Schoinianakis, T. Hollebeek, M. Ounsworth | Informational | June 2026 |
| 9955 | Hybrid Signature SpectrumsN. Bindel, B. Hale, D. Connolly, F. Driscoll | Informational | July 2026 |
| 9954 | Hybrid Key Exchange in TLS 1.3D. Stebila, S. Fluhrer, S. Gueron | Informational | July 2026 |
| 9944 | Device Schema Extensions to the System for Cross-Domain Identity Management (SCIM) ModelM. Shahzad, H. Iqbal, E. Lear | Proposed Standard | May 2026 |
| 9943 | An Architecture for Trustworthy and Transparent Digital Supply ChainsH. Birkholz, A. Delignat-Lavaud, C. Fournet, Y. Deshpande, S. Lasker | Proposed Standard | June 2026 |
| 9942 | CBOR Object Signing and Encryption (COSE) ReceiptsO. Steele, H. Birkholz, A. Delignat-Lavaud, C. Fournet | Proposed Standard | June 2026 |
| 9941 | Secure Shell (SSH) Key Exchange Method Using Hybrid Streamlined NTRU Prime sntrup761 and X25519 with SHA-512: sntrup761x25519-sha512M. Friedl, J. Mojzis, S. Josefsson | Informational | April 2026 |
| 9939 | PKCS #8: Private-Key Information Content TypesJ. Mandel, R. Housley, S. Turner | Proposed Standard | February 2026 |
| 9936 | Use of ML-KEM in the Cryptographic Message Syntax (CMS)J. Prat, M. Ounsworth, D. Van Geest | Proposed Standard | March 2026 |
| 9935 | Internet X.509 Public Key Infrastructure - Algorithm Identifiers for the Module-Lattice-Based Key-Encapsulation Mechanism (ML-KEM)S. Turner, P. Kampanakis, J. Massimo, B. E. Westerbaan | Proposed Standard | March 2026 |
| 9930 | Tunnel Extensible Authentication Protocol (TEAP) Version 1A. DeKok, Ed. | Proposed Standard | February 2026 |
| 9925 | Unsigned X.509 CertificatesD. Benjamin | Proposed Standard | February 2026 |
| 9921 | CBOR Object Signing and Encryption (COSE) Header Parameter for Timestamp Tokens as Defined in RFC 3161H. Birkholz, T. Fossati, M. Riechert | Proposed Standard | February 2026 |
| 9919 | The Lightweight Online Certificate Status Protocol (OCSP) Profile for High-Volume EnvironmentsT. Ito, C. Wilson, C. Bonnell, S. Turner | Proposed Standard | July 2026 |
| 9909 | Internet X.509 Public Key Infrastructure -- Algorithm Identifiers for the Stateless Hash-Based Digital Signature Algorithm (SLH-DSA)K. Bashiri, S. Fluhrer, S. Gazdag, D. Van Geest, S. Kousidis | Proposed Standard | December 2025 |
| 9908 | Clarification and Enhancement of the CSR Attributes Definition in RFC 7030M. Richardson, Ed., O. Friel, D. von Oheimb, D. Harkins | Proposed Standard | January 2026 |
| 9901 | Selective Disclosure for JSON Web TokensD. Fett, K. Yasuda, B. Campbell | Proposed Standard | November 2025 |
| 9891 | Automated Certificate Management Environment (ACME) Delay-Tolerant Networking (DTN) Node ID Validation ExtensionB. Sipos | Experimental | November 2025 |
| 9883 | An Attribute for Statement of Possession of a Private KeyR. Housley | Proposed Standard | October 2025 |
| 9882 | Use of the ML-DSA Signature Algorithm in the Cryptographic Message Syntax (CMS)B. Salter, A. Raine, D. Van Geest | Proposed Standard | October 2025 |
| 9881 | Internet X.509 Public Key Infrastructure -- Algorithm Identifiers for the Module-Lattice-Based Digital Signature Algorithm (ML-DSA)J. Massimo, P. Kampanakis, S. Turner, B. E. Westerbaan | Proposed Standard | October 2025 |
| 9879 | Use of Password-Based Message Authentication Code 1 (PBMAC1) in PKCS #12 SyntaxA. Kario | Informational | September 2025 |
| 9867 | Mixing Preshared Keys in the IKE_INTERMEDIATE and CREATE_CHILD_SA Exchanges of the Internet Key Exchange Protocol Version 2 (IKEv2) for Post-Quantum SecurityV. Smyslov | Proposed Standard | November 2025 |
| 9865 | Cursor-Based Pagination of System of Cross-domain Identity Management (SCIM) ResourcesM. Peterson, Ed., D. Zollner, A. Sehgal | Proposed Standard | October 2025 |
| 9864 | Fully-Specified Algorithms for JSON Object Signing and Encryption (JOSE) and CBOR Object Signing and Encryption (COSE)M.B. Jones, O. Steele | Proposed Standard | October 2025 |
| 9853 | Return Routability Check for DTLS 1.2 and 1.3H. Tschofenig, Ed., A. Kraus, T. Fossati | Proposed Standard | March 2026 |
| 9852 | New Protocols Using TLS Must Require TLS 1.3R. Salz, N. Aviram | Best Current Practice | July 2026 |
| 9851 | TLS 1.2 is in Feature FreezeR. Salz, N. Aviram | Proposed Standard | July 2026 |
| 9850 | The SSLKEYLOGFILE Format for TLSM. Thomson, Y. Rosomakho, H. Tschofenig | Informational | July 2026 |
| 9849 | TLS Encrypted Client HelloE. Rescorla, K. Oku, N. Sullivan, C. A. Wood | Proposed Standard | March 2026 |
| 9848 | Bootstrapping TLS Encrypted ClientHello with DNS Service BindingsB. Schwartz, M. Bishop, E. Nygren | Proposed Standard | March 2026 |
| 9847 | IANA Registry Updates for TLS and DTLSJ. Salowey, S. Turner | Proposed Standard | December 2025 |
| 9846 | The Transport Layer Security (TLS) Protocol Version 1.3E. Rescorla | Proposed Standard | July 2026 |
| 9838 | Group Key Management Using the Internet Key Exchange Protocol Version 2 (IKEv2)V. Smyslov, B. Weis | Proposed Standard | November 2025 |
| 9827 | Renaming the Extended Sequence Numbers (ESN) Transform Type in the Internet Key Exchange Protocol Version 2 (IKEv2)V. Smyslov | Proposed Standard | November 2025 |
| 9820 | Authentication Service Based on the Extensible Authentication Protocol (EAP) for Use with the Constrained Application Protocol (CoAP)R. Marin-Lopez, D. Garcia-Carrillo | Proposed Standard | September 2025 |
| 9814 | Use of the SLH-DSA Signature Algorithm in the Cryptographic Message Syntax (CMS)R. Housley, S. Fluhrer, P. Kampanakis, B. Westerbaan | Proposed Standard | July 2025 |
| 9813 | Operational Considerations for Using TLS Pre-Shared Keys (TLS-PSKs) with RADIUSA. DeKok | Best Current Practice | July 2025 |
| 9811 | Internet X.509 Public Key Infrastructure -- HTTP Transfer for the Certificate Management Protocol (CMP)H. Brockhaus, D. von Oheimb, M. Ounsworth, J. Gray | Proposed Standard | July 2025 |
| 9810 | Internet X.509 Public Key Infrastructure -- Certificate Management Protocol (CMP)H. Brockhaus, D. von Oheimb, M. Ounsworth, J. Gray | Proposed Standard | July 2025 |
| 9809 | X.509 Certificate Extended Key Usage (EKU) for Configuration, Updates, and Safety-Critical CommunicationH. Brockhaus, D. Goltzsche | Proposed Standard | July 2025 |
| 9802 | Use of the HSS and XMSS Hash-Based Signature Algorithms in Internet X.509 Public Key InfrastructureD. Van Geest, K. Bashiri, S. Fluhrer, S. Gazdag, S. Kousidis | Proposed Standard | June 2025 |
| 9799 | Automated Certificate Management Environment (ACME) Extensions for ".onion" Special-Use Domain NamesQ Misell, Ed. | Proposed Standard | June 2025 |
| 9794 | Terminology for Post-Quantum Traditional Hybrid SchemesF. Driscoll, M. Parsons, B. Hale | Informational | June 2025 |
| 9788 | Header Protection for Cryptographically Protected EmailD. K. Gillmor, B. Hoeneisen, A. Melnikov | Proposed Standard | August 2025 |
| 9787 | Guidance on End-to-End Email SecurityD. K. Gillmor, Ed., A. Melnikov, Ed., B. Hoeneisen, Ed. | Informational | August 2025 |
| 9782 | Entity Attestation Token (EAT) Media TypesL. Lundblade, H. Birkholz, T. Fossati | Proposed Standard | May 2025 |
| 9781 | A Concise Binary Object Representation (CBOR) Tag for Unprotected CBOR Web Token Claims Sets (UCCS)H. Birkholz, J. O'Donoghue, N. Cam-Winget, C. Bormann | Proposed Standard | May 2025 |
| 9773 | ACME Renewal Information (ARI) ExtensionA. Gable | Proposed Standard | June 2025 |
| 9770 | Notification of Revoked Access Tokens in the Authentication and Authorization for Constrained Environments (ACE) FrameworkM. Tiloca, F. Palombini, S. Echeverria, G. Lewis | Proposed Standard | June 2025 |
| 9767 | Grant Negotiation and Authorization Protocol Resource Server ConnectionsJ. Richer, Ed., F. Imbault | Proposed Standard | April 2025 |
| 9765 | RADIUS/1.1: Leveraging Application-Layer Protocol Negotiation (ALPN) to Remove MD5A. DeKok | Experimental | April 2025 |
| 9763 | Related Certificates for Use in Multiple Authentications within a ProtocolA. Becker, R. Guthrie, M. Jenkins | Proposed Standard | June 2025 |
| 9750 | The Messaging Layer Security (MLS) ArchitectureB. Beurdouche, E. Rescorla, E. Omara, S. Inguva, A. Duric | Informational | April 2025 |
| 9734 | X.509 Certificate Extended Key Usage (EKU) for Instant Messaging URIsR. Mahy | Proposed Standard | February 2025 |
| 9728 | OAuth 2.0 Protected Resource MetadataM.B. Jones, P. Hunt, A. Parecki | Proposed Standard | April 2025 |
| 9711 | The Entity Attestation Token (EAT)L. Lundblade, G. Mandyam, J. O'Donoghue, C. Wallace | Proposed Standard | April 2025 |
| 9709 | Encryption Key Derivation in the Cryptographic Message Syntax (CMS) Using HKDF with SHA-256R. Housley | Proposed Standard | January 2025 |
| 9708 | Use of the HSS/LMS Hash-Based Signature Algorithm in the Cryptographic Message Syntax (CMS)R. Housley | Proposed Standard | January 2025 |
| 9701 | JSON Web Token (JWT) Response for OAuth Token IntrospectionT. Lodderstedt, Ed., V. Dzhuvinov | Proposed Standard | January 2025 |
| 9700 | Best Current Practice for OAuth 2.0 SecurityT. Lodderstedt, J. Bradley, A. Labunets, D. Fett | Best Current Practice | January 2025 |
| 9690 | Use of the RSA-KEM Algorithm in the Cryptographic Message Syntax (CMS)R. Housley, S. Turner | Proposed Standard | February 2025 |
| 9688 | Use of the SHA3 One-Way Hash Functions in the Cryptographic Message Syntax (CMS)R. Housley | Proposed Standard | November 2024 |
| 9684 | A YANG Data Model for Challenge-Response-Based Remote Attestation (CHARRA) Procedures Using Trusted Platform Modules (TPMs)H. Birkholz, M. Eckel, S. Bhandari, E. Voit, B. Sulzen, L. Xia, T. Laffey, G. C. Fedorkow | Proposed Standard | December 2024 |
| 9683 | Remote Integrity Verification of Network Devices Containing Trusted Platform ModulesG. C. Fedorkow, Ed., E. Voit, J. Fitzgerald-McKay | Informational | December 2024 |
| 9679 | CBOR Object Signing and Encryption (COSE) Key ThumbprintK. Isobe, H. Tschofenig, O. Steele | Proposed Standard | December 2024 |
| 9678 | Forward Secrecy Extension to the Improved Extensible Authentication Protocol Method for Authentication and Key Agreement (EAP-AKA' FS)J. Arkko, K. Norrman, J. Preuß Mattsson | Proposed Standard | March 2025 |
| 9662 | Updates to the Cipher Suites in Secure SyslogC. Lonvick, S. Turner, J. Salowey | Proposed Standard | October 2024 |
| 9654 | Online Certificate Status Protocol (OCSP) Nonce ExtensionH. Sharma, Ed. | Proposed Standard | August 2024 |
| 9635 | Grant Negotiation and Authorization Protocol (GNAP)J. Richer, Ed., F. Imbault | Proposed Standard | October 2024 |
| 9629 | Using Key Encapsulation Mechanism (KEM) Algorithms in the Cryptographic Message Syntax (CMS)R. Housley, J. Gray, T. Okubo | Proposed Standard | August 2024 |
| 9618 | Updates to X.509 Policy ValidationD. Benjamin | Proposed Standard | August 2024 |
| 9611 | Internet Key Exchange Protocol Version 2 (IKEv2) Support for Per-Resource Child Security Associations (SAs)A. Antony, T. Brunner, S. Klassert, P. Wouters | Proposed Standard | July 2024 |
| 9608 | No Revocation Available for X.509 Public Key CertificatesR. Housley, T. Okubo, J. Mandel | Proposed Standard | June 2024 |
| 9598 | Internationalized Email Addresses in X.509 CertificatesA. Melnikov, W. Chuang, C. Bonnell | Proposed Standard | May 2024 |
| 9597 | CBOR Web Token (CWT) Claims in COSE HeadersT. Looker, M.B. Jones | Proposed Standard | June 2024 |
| 9596 | CBOR Object Signing and Encryption (COSE) "typ" (type) Header ParameterM.B. Jones, O. Steele | Proposed Standard | June 2024 |
| 9594 | Key Provisioning for Group Communication Using Authentication and Authorization for Constrained Environments (ACE)F. Palombini, M. Tiloca | Proposed Standard | September 2024 |
| 9593 | Announcing Supported Authentication Methods in the Internet Key Exchange Protocol Version 2 (IKEv2)V. Smyslov | Proposed Standard | July 2024 |
| 9588 | Kerberos Simple Password-Authenticated Key Exchange (SPAKE) Pre-authenticationN. McCallum, S. Sorce, R. Harwood, G. Hudson | Proposed Standard | August 2024 |
| 9580 | OpenPGPP. Wouters, Ed., D. Huigens, J. Winter, Y. Niibe | Proposed Standard | July 2024 |
| 9579 | Use of Password-Based Message Authentication Code 1 (PBMAC1) in PKCS #12 SyntaxH. Kario · obsoleted by RFC 9879 | Informational | May 2024 |
| 9578 | Privacy Pass Issuance ProtocolsS. Celi, A. Davidson, S. Valdez, C. A. Wood | Proposed Standard | June 2024 |
| 9577 | The Privacy Pass HTTP Authentication SchemeT. Pauly, S. Valdez, C. A. Wood | Proposed Standard | June 2024 |
| 9576 | The Privacy Pass ArchitectureA. Davidson, J. Iyengar, C. A. Wood | Informational | June 2024 |
| 9549 | Internationalization Updates to RFC 5280R. Housley | Proposed Standard | March 2024 |
| 9540 | Discovery of Oblivious Services via Service Binding RecordsT. Pauly, T. Reddy.K | Proposed Standard | February 2024 |
| 9529 | Traces of Ephemeral Diffie-Hellman Over COSE (EDHOC)G. Selander, J. Preuß Mattsson, M. Serafin, M. Tiloca, M. Vučinić | Informational | March 2024 |
| 9528 | Ephemeral Diffie-Hellman Over COSE (EDHOC)G. Selander, J. Preuß Mattsson, F. Palombini | Proposed Standard | March 2024 |
| 9525 | Service Identity in TLSP. Saint-Andre, R. Salz | Proposed Standard | November 2023 |
| 9509 | X.509 Certificate Extended Key Usage (EKU) for 5G Network FunctionsT. Reddy.K, J. Ekman, D. Migault | Proposed Standard | March 2024 |
| 9495 | Certification Authority Authorization (CAA) Processing for Email AddressesC. Bonnell | Proposed Standard | October 2023 |
| 9493 | Subject Identifiers for Security Event TokensA. Backman, Ed., M. Scurtescu, P. Jain | Proposed Standard | December 2023 |
| 9483 | Lightweight Certificate Management Protocol (CMP) ProfileH. Brockhaus, D. von Oheimb, S. Fries | Proposed Standard | November 2023 |
| 9482 | Constrained Application Protocol (CoAP) Transfer for the Certificate Management ProtocolM. Sahni, Ed., S. Tripathi, Ed. | Proposed Standard | November 2023 |
| 9481 | Certificate Management Protocol (CMP) AlgorithmsH. Brockhaus, H. Aschauer, M. Ounsworth, J. Gray | Proposed Standard | November 2023 |
| 9480 | Certificate Management Protocol (CMP) UpdatesH. Brockhaus, D. von Oheimb, J. Gray · obsoleted by RFC 9810, RFC 9811 | Proposed Standard | November 2023 |
| 9478 | Labeled IPsec Traffic Selector Support for the Internet Key Exchange Protocol Version 2 (IKEv2)P. Wouters, S. Prasad | Proposed Standard | October 2023 |
| 9470 | OAuth 2.0 Step Up Authentication Challenge ProtocolV. Bertocci, B. Campbell | Proposed Standard | September 2023 |
| 9464 | Internet Key Exchange Protocol Version 2 (IKEv2) Configuration for Encrypted DNSM. Boucadair, T. Reddy.K, D. Wing, V. Smyslov | Proposed Standard | November 2023 |
| 9459 | CBOR Object Signing and Encryption (COSE): AES-CTR and AES-CBCR. Housley, H. Tschofenig | Proposed Standard | September 2023 |
| 9458 | Oblivious HTTPM. Thomson, C. A. Wood | Proposed Standard | January 2024 |
| 9449 | OAuth 2.0 Demonstrating Proof of Possession (DPoP)D. Fett, B. Campbell, J. Bradley, T. Lodderstedt, M. Jones, D. Waite | Proposed Standard | September 2023 |
| 9448 | TNAuthList Profile of Automated Certificate Management Environment (ACME) Authority TokenC. Wendt, D. Hancock, M. Barnes, J. Peterson | Proposed Standard | September 2023 |
| 9447 | Automated Certificate Management Environment (ACME) Challenges Using an Authority TokenJ. Peterson, M. Barnes, D. Hancock, C. Wendt | Proposed Standard | September 2023 |
| 9444 | Automated Certificate Management Environment (ACME) for SubdomainsO. Friel, R. Barnes, T. Hollebeek, M. Richardson | Proposed Standard | August 2023 |
| 9431 | Message Queuing Telemetry Transport (MQTT) and Transport Layer Security (TLS) Profile of Authentication and Authorization for Constrained Environments (ACE) FrameworkC. Sengul, A. Kirby | Proposed Standard | July 2023 |
| 9430 | Extension of the Datagram Transport Layer Security (DTLS) Profile for Authentication and Authorization for Constrained Environments (ACE) to Transport Layer Security (TLS)O. Bergmann, J. Preuß Mattsson, G. Selander | Proposed Standard | July 2023 |
| 9427 | TLS-Based Extensible Authentication Protocol (EAP) Types for Use with TLS 1.3A. DeKok | Proposed Standard | June 2023 |
| 9420 | The Messaging Layer Security (MLS) ProtocolR. Barnes, B. Beurdouche, R. Robert, J. Millican, E. Omara, K. Cohn-Gordon | Proposed Standard | July 2023 |
| 9399 | Internet X.509 Public Key Infrastructure: Logotypes in X.509 CertificatesS. Santesson, R. Housley, T. Freeman, L. Rosenthol | Proposed Standard | May 2023 |
| 9397 | Trusted Execution Environment Provisioning (TEEP) ArchitectureM. Pei, H. Tschofenig, D. Thaler, D. Wheeler | Informational | July 2023 |
| 9396 | OAuth 2.0 Rich Authorization RequestsT. Lodderstedt, J. Richer, B. Campbell | Proposed Standard | May 2023 |
| 9395 | Deprecation of the Internet Key Exchange Version 1 (IKEv1) Protocol and Obsoleted AlgorithmsP. Wouters, Ed. | Proposed Standard | April 2023 |
| 9393 | Concise Software Identification TagsH. Birkholz, J. Fitzgerald-McKay, C. Schmidt, D. Waltermire | Proposed Standard | June 2023 |
| 9387 | Use Cases for DDoS Open Threat Signaling (DOTS) TelemetryY. Hayashi, M. Chen, L. Su | Informational | April 2023 |
| 9370 | Multiple Key Exchanges in the Internet Key Exchange Protocol Version 2 (IKEv2)CJ. Tjhai, M. Tomlinson, G. Bartlett, S. Fluhrer, D. Van Geest, O. Garcia-Morchon, V. Smyslov | Proposed Standard | May 2023 |
| 9362 | Distributed Denial-of-Service Open Threat Signaling (DOTS) Signal Channel Configuration Attributes for Robust Block TransmissionM. Boucadair, J. Shallow | Proposed Standard | February 2023 |
| 9360 | CBOR Object Signing and Encryption (COSE): Header Parameters for Carrying and Referencing X.509 CertificatesJ. Schaad | Proposed Standard | February 2023 |
| 9349 | Definitions of Managed Objects for IP Traffic Flow SecurityD. Fedyk, E. Kinzie | Proposed Standard | January 2023 |
| 9348 | A YANG Data Model for IP Traffic Flow SecurityD. Fedyk, C. Hopps | Proposed Standard | January 2023 |
| 9347 | Aggregation and Fragmentation Mode for Encapsulating Security Payload (ESP) and Its Use for IP Traffic Flow Security (IP-TFS)C. Hopps | Proposed Standard | January 2023 |
| 9345 | Delegated Credentials for TLS and DTLSR. Barnes, S. Iyengar, N. Sullivan, E. Rescorla | Proposed Standard | July 2023 |
| 9338 | CBOR Object Signing and Encryption (COSE): CountersignaturesJ. Schaad | Internet Standard | December 2022 |
| 9336 | X.509 Certificate General-Purpose Extended Key Usage (EKU) for Document SigningT. Ito, T. Okubo, S. Turner | Proposed Standard | December 2022 |
| 9334 | Remote ATtestation procedureS (RATS) ArchitectureH. Birkholz, D. Thaler, M. Richardson, N. Smith, W. Pan | Informational | January 2023 |
| 9329 | TCP Encapsulation of Internet Key Exchange Protocol (IKE) and IPsec PacketsT. Pauly, V. Smyslov | Proposed Standard | November 2022 |
| 9325 | Recommendations for Secure Use of Transport Layer Security (TLS) and Datagram Transport Layer Security (DTLS)Y. Sheffer, P. Saint-Andre, T. Fossati | Best Current Practice | November 2022 |
| 9310 | X.509 Certificate Extension for 5G Network Function TypesR. Housley, S. Turner, J. Preuß Mattsson, D. Migault | Proposed Standard | January 2023 |
| 9295 | Clarifications for Ed25519, Ed448, X25519, and X448 Algorithm IdentifiersS. Turner, S. Josefsson, D. McCarney, T. Ito | Proposed Standard | September 2022 |
| 9284 | Multihoming Deployment Considerations for DDoS Open Threat Signaling (DOTS)M. Boucadair, T. Reddy.K, W. Pan | Informational | August 2022 |
| 9278 | JWK Thumbprint URIM. Jones, K. Yasuda | Proposed Standard | August 2022 |
| 9266 | Channel Bindings for TLS 1.3S. Whited | Proposed Standard | July 2022 |
| 9261 | Exported Authenticators in TLSN. Sullivan | Proposed Standard | July 2022 |
| 9258 | Importing External Pre-Shared Keys (PSKs) for TLS 1.3D. Benjamin, C. A. Wood | Proposed Standard | July 2022 |
| 9257 | Guidance for External Pre-Shared Key (PSK) Usage in TLSR. Housley, J. Hoyland, M. Sethi, C. A. Wood | Informational | July 2022 |
| 9244 | Distributed Denial-of-Service Open Threat Signaling (DOTS) TelemetryM. Boucadair, Ed., T. Reddy.K, Ed., E. Doron, M. Chen, J. Shallow | Proposed Standard | June 2022 |
| 9242 | Intermediate Exchange in the Internet Key Exchange Protocol Version 2 (IKEv2)V. Smyslov | Proposed Standard | May 2022 |
| 9237 | An Authorization Information Format (AIF) for Authentication and Authorization for Constrained Environments (ACE)C. Bormann | Proposed Standard | August 2022 |
| 9216 | S/MIME Example Keys and CertificatesD. K. Gillmor, Ed. | Informational | April 2022 |
| 9207 | OAuth 2.0 Authorization Server Issuer IdentificationK. Meyer zu Selhausen, D. Fett | Proposed Standard | March 2022 |
| 9203 | The Object Security for Constrained RESTful Environments (OSCORE) Profile of the Authentication and Authorization for Constrained Environments (ACE) FrameworkF. Palombini, L. Seitz, G. Selander, M. Gunnarsson | Proposed Standard | August 2022 |
| 9202 | Datagram Transport Layer Security (DTLS) Profile for Authentication and Authorization for Constrained Environments (ACE)S. Gerdes, O. Bergmann, C. Bormann, G. Selander, L. Seitz | Proposed Standard | August 2022 |
| 9201 | Additional OAuth Parameters for Authentication and Authorization for Constrained Environments (ACE)L. Seitz | Proposed Standard | August 2022 |
| 9200 | Authentication and Authorization for Constrained Environments Using the OAuth 2.0 Framework (ACE-OAuth)L. Seitz, G. Selander, E. Wahlstroem, S. Erdtman, H. Tschofenig | Proposed Standard | August 2022 |
| 9191 | Handling Large Certificates and Long Certificate Chains in TLS-Based EAP MethodsM. Sethi, J. Preuß Mattsson, S. Turner | Informational | February 2022 |
| 9190 | EAP-TLS 1.3: Using the Extensible Authentication Protocol with TLS 1.3J. Preuß Mattsson, M. Sethi | Proposed Standard | February 2022 |
| 9162 | Certificate Transparency Version 2.0B. Laurie, E. Messeri, R. Stradling | Experimental | December 2021 |
| 9158 | Update to the Object Identifier Registry for the PKIX Working GroupR. Housley | Informational | November 2021 |
| 9155 | Deprecating MD5 and SHA-1 Signature Hashes in TLS 1.2 and DTLS 1.2L. Velvindron, K. Moriarty, A. Ghedini | Proposed Standard | December 2021 |
| 9149 | TLS Ticket RequestsT. Pauly, D. Schinazi, C.A. Wood | Proposed Standard | April 2022 |
| 9148 | EST-coaps: Enrollment over Secure Transport with the Secure Constrained Application ProtocolP. van der Stok, P. Kampanakis, M. Richardson, S. Raza | Proposed Standard | April 2022 |
| 9147 | The Datagram Transport Layer Security (DTLS) Protocol Version 1.3E. Rescorla, H. Tschofenig, N. Modadugu | Proposed Standard | April 2022 |
| 9146 | Connection Identifier for DTLS 1.2E. Rescorla, Ed., H. Tschofenig, Ed., T. Fossati, A. Kraus | Proposed Standard | March 2022 |
| 9142 | Key Exchange (KEX) Method Updates and Recommendations for Secure Shell (SSH)M. Baushke | Proposed Standard | January 2022 |
| 9140 | Nimble Out-of-Band Authentication for EAP (EAP-NOOB)T. Aura, M. Sethi, A. Peltonen | Proposed Standard | December 2021 |
| 9133 | Controlling Filtering Rules Using Distributed Denial-of-Service Open Threat Signaling (DOTS) Signal ChannelK. Nishizuka, M. Boucadair, T. Reddy.K, T. Nagata | Proposed Standard | September 2021 |
| 9132 | Distributed Denial-of-Service Open Threat Signaling (DOTS) Signal Channel SpecificationM. Boucadair, Ed., J. Shallow, T. Reddy.K | Proposed Standard | September 2021 |
| 9126 | OAuth 2.0 Pushed Authorization RequestsT. Lodderstedt, B. Campbell, N. Sakimura, D. Tonge, F. Skokan | Proposed Standard | September 2021 |
| 9124 | A Manifest Information Model for Firmware Updates in Internet of Things (IoT) DevicesB. Moran, H. Tschofenig, H. Birkholz | Informational | January 2022 |
| 9115 | An Automatic Certificate Management Environment (ACME) Profile for Generating Delegated CertificatesY. Sheffer, D. López, A. Pastor Perales, T. Fossati | Proposed Standard | September 2021 |
| 9101 | The OAuth 2.0 Authorization Framework: JWT-Secured Authorization Request (JAR)N. Sakimura, J. Bradley, M. Jones | Proposed Standard | August 2021 |
| 9068 | JSON Web Token (JWT) Profile for OAuth 2.0 Access TokensV. Bertocci | Proposed Standard | October 2021 |
| 9066 | Distributed Denial-of-Service Open Threat Signaling (DOTS) Signal Channel Call HomeT. Reddy.K, M. Boucadair, Ed., J. Shallow | Proposed Standard | December 2021 |
| 9061 | A YANG Data Model for IPsec Flow Protection Based on Software-Defined Networking (SDN)R. Marin-Lopez, G. Lopez-Millan, F. Pereniguez-Garcia | Proposed Standard | July 2021 |
| 9054 | CBOR Object Signing and Encryption (COSE): Hash AlgorithmsJ. Schaad | Informational | August 2022 |
| 9053 | CBOR Object Signing and Encryption (COSE): Initial AlgorithmsJ. Schaad | Informational | August 2022 |
| 9052 | CBOR Object Signing and Encryption (COSE): Structures and ProcessJ. Schaad | Internet Standard | August 2022 |
| 9048 | Improved Extensible Authentication Protocol Method for 3GPP Mobile Network Authentication and Key Agreement (EAP-AKA')J. Arkko, V. Lehtovirta, V. Torvinen, P. Eronen | Proposed Standard | October 2021 |
| 9045 | Algorithm Requirements Update to the Internet X.509 Public Key Infrastructure Certificate Request Message Format (CRMF)R. Housley | Proposed Standard | June 2021 |
| 9044 | Using the AES-GMAC Algorithm with the Cryptographic Message Syntax (CMS)R. Housley | Proposed Standard | June 2021 |
| 9019 | A Firmware Update Architecture for Internet of ThingsB. Moran, H. Tschofenig, D. Brown, M. Meriac | Informational | April 2021 |
| 8997 | Deprecation of TLS 1.1 for Email Submission and AccessL. Velvindron, S. Farrell | Proposed Standard | March 2021 |
| 8996 | Deprecating TLS 1.0 and TLS 1.1K. Moriarty, S. Farrell | Best Current Practice | March 2021 |
| 8983 | Internet Key Exchange Protocol Version 2 (IKEv2) Notification Status Types for IPv4/IPv6 CoexistenceM. Boucadair | Proposed Standard | February 2021 |
| 8973 | DDoS Open Threat Signaling (DOTS) Agent DiscoveryM. Boucadair, T. Reddy.K | Proposed Standard | January 2021 |
| 8954 | Online Certificate Status Protocol (OCSP) Nonce ExtensionM. Sahni, Ed. · obsoleted by RFC 9654 | Proposed Standard | November 2020 |
| 8951 | Clarification of Enrollment over Secure Transport (EST): Transfer Encodings and ASN.1M. Richardson, T. Werner, W. Pan | Proposed Standard | November 2020 |
| 8940 | Extensible Authentication Protocol (EAP) Session-Id Derivation for EAP Subscriber Identity Module (EAP-SIM), EAP Authentication and Key Agreement (EAP-AKA), and Protected EAP (PEAP)A. DeKok | Proposed Standard | October 2020 |
| 8936 | Poll-Based Security Event Token (SET) Delivery Using HTTPA. Backman, Ed., M. Jones, Ed., M. Scurtescu, M. Ansari, A. Nadalin | Proposed Standard | November 2020 |
| 8935 | Push-Based Security Event Token (SET) Delivery Using HTTPA. Backman, Ed., M. Jones, Ed., M. Scurtescu, M. Ansari, A. Nadalin | Proposed Standard | November 2020 |
| 8933 | Update to the Cryptographic Message Syntax (CMS) for Algorithm Identifier ProtectionR. Housley | Proposed Standard | October 2020 |
| 8903 | Use Cases for DDoS Open Threat SignalingR. Dobbins, D. Migault, R. Moskowitz, N. Teague, L. Xia, K. Nishizuka | Informational | May 2021 |
| 8879 | TLS Certificate CompressionA. Ghedini, V. Vasiliev | Proposed Standard | December 2020 |
| 8823 | Extensions to Automatic Certificate Management Environment for End-User S/MIME CertificatesA. Melnikov | Informational | April 2021 |
| 8813 | Clarifications for Elliptic Curve Cryptography Subject Public Key InformationT. Ito, S. Turner | Proposed Standard | August 2020 |
| 8812 | CBOR Object Signing and Encryption (COSE) and JSON Object Signing and Encryption (JOSE) Registrations for Web Authentication (WebAuthn) AlgorithmsM. Jones | Proposed Standard | August 2020 |
| 8811 | DDoS Open Threat Signaling (DOTS) ArchitectureA. Mortensen, Ed., T. Reddy.K, Ed., F. Andreasen, N. Teague, R. Compton | Informational | August 2020 |
| 8784 | Mixing Preshared Keys in the Internet Key Exchange Protocol Version 2 (IKEv2) for Post-quantum SecurityS. Fluhrer, P. Kampanakis, D. McGrew, V. Smyslov | Proposed Standard | June 2020 |
| 8783 | Distributed Denial-of-Service Open Threat Signaling (DOTS) Data Channel SpecificationM. Boucadair, Ed., T. Reddy.K, Ed. | Proposed Standard | May 2020 |
| 8782 | Distributed Denial-of-Service Open Threat Signaling (DOTS) Signal Channel SpecificationT. Reddy.K, Ed., M. Boucadair, Ed., P. Patil, A. Mortensen, N. Teague · obsoleted by RFC 9132 | Proposed Standard | May 2020 |
| 8778 | Use of the HSS/LMS Hash-Based Signature Algorithm with CBOR Object Signing and Encryption (COSE)R. Housley | Proposed Standard | April 2020 |
| 8773 | TLS 1.3 Extension for Certificate-Based Authentication with an External Pre-Shared KeyR. Housley · obsoleted by RFC 9973 | Experimental | March 2020 |
| 8758 | Deprecating RC4 in Secure Shell (SSH)L. Velvindron | Best Current Practice | April 2020 |
| 8750 | Implicit Initialization Vector (IV) for Counter-Based Ciphers in Encapsulating Security Payload (ESP)D. Migault, T. Guggemos, Y. Nir | Proposed Standard | March 2020 |
| 8747 | Proof-of-Possession Key Semantics for CBOR Web Tokens (CWTs)M. Jones, L. Seitz, G. Selander, S. Erdtman, H. Tschofenig | Proposed Standard | March 2020 |
| 8744 | Issues and Requirements for Server Name Identification (SNI) Encryption in TLSC. Huitema | Informational | July 2020 |
| 8739 | Support for Short-Term, Automatically Renewed (STAR) Certificates in the Automated Certificate Management Environment (ACME)Y. Sheffer, D. Lopez, O. Gonzalez de Dios, A. Pastor Perales, T. Fossati | Proposed Standard | March 2020 |
| 8738 | Automated Certificate Management Environment (ACME) IP Identifier Validation ExtensionR.B. Shoemaker | Proposed Standard | February 2020 |
| 8737 | Automated Certificate Management Environment (ACME) TLS Application-Layer Protocol Negotiation (ALPN) Challenge ExtensionR.B. Shoemaker | Proposed Standard | February 2020 |
| 8732 | Generic Security Service Application Program Interface (GSS-API) Key Exchange with SHA-2S. Sorce, H. Kario | Proposed Standard | February 2020 |
| 8731 | Secure Shell (SSH) Key Exchange Method Using Curve25519 and Curve448A. Adamantiadis, S. Josefsson, M. Baushke | Proposed Standard | February 2020 |
| 8727 | JSON Binding of the Incident Object Description Exchange FormatT. Takahashi, R. Danyliw, M. Suzuki | Proposed Standard | August 2020 |
| 8725 | JSON Web Token Best Current PracticesY. Sheffer, D. Hardt, M. Jones | Best Current Practice | February 2020 |
| 8709 | Ed25519 and Ed448 Public Key Algorithms for the Secure Shell (SSH) ProtocolB. Harris, L. Velvindron | Proposed Standard | February 2020 |
| 8708 | Use of the HSS/LMS Hash-Based Signature Algorithm in the Cryptographic Message Syntax (CMS)R. Housley · obsoleted by RFC 9708 | Proposed Standard | February 2020 |
| 8707 | Resource Indicators for OAuth 2.0B. Campbell, J. Bradley, H. Tschofenig | Proposed Standard | February 2020 |
| 8705 | OAuth 2.0 Mutual-TLS Client Authentication and Certificate-Bound Access TokensB. Campbell, J. Bradley, N. Sakimura, T. Lodderstedt | Proposed Standard | February 2020 |
| 8702 | Use of the SHAKE One-Way Hash Functions in the Cryptographic Message Syntax (CMS)P. Kampanakis, Q. Dang | Proposed Standard | January 2020 |
| 8701 | Applying Generate Random Extensions And Sustain Extensibility (GREASE) to TLS ExtensibilityD. Benjamin | Informational | January 2020 |
| 8696 | Using Pre-Shared Key (PSK) in the Cryptographic Message Syntax (CMS)R. Housley | Proposed Standard | December 2019 |
| 8693 | OAuth 2.0 Token ExchangeM. Jones, A. Nadalin, B. Campbell, Ed., J. Bradley, C. Mortimore | Proposed Standard | January 2020 |
| 8692 | Internet X.509 Public Key Infrastructure: Additional Algorithm Identifiers for RSASSA-PSS and ECDSA Using SHAKEsP. Kampanakis, Q. Dang | Proposed Standard | December 2019 |
| 8689 | SMTP Require TLS OptionJ. Fenton | Proposed Standard | November 2019 |
| 8659 | DNS Certification Authority Authorization (CAA) Resource RecordP. Hallam-Baker, R. Stradling, J. Hoffman-Andrews | Proposed Standard | November 2019 |
| 8657 | Certification Authority Authorization (CAA) Record Extensions for Account URI and Automatic Certificate Management Environment (ACME) Method BindingH. Landau | Proposed Standard | November 2019 |
| 8649 | Hash Of Root Key Certificate ExtensionR. Housley | Informational | August 2019 |
| 8636 | Public Key Cryptography for Initial Authentication in Kerberos (PKINIT) Algorithm AgilityL. Hornquist Astrand, L. Zhu, M. Cullen, G. Hudson | Proposed Standard | July 2019 |
| 8628 | OAuth 2.0 Device Authorization GrantW. Denniss, J. Bradley, M. Jones, H. Tschofenig | Proposed Standard | August 2019 |
| 8612 | DDoS Open Threat Signaling (DOTS) RequirementsA. Mortensen, T. Reddy, R. Moskowitz | Informational | May 2019 |
| 8600 | Using Extensible Messaging and Presence Protocol (XMPP) for Security Information ExchangeN. Cam-Winget, Ed., S. Appala, S. Pope, P. Saint-Andre | Proposed Standard | June 2019 |
| 8598 | Split DNS Configuration for the Internet Key Exchange Protocol Version 2 (IKEv2)T. Pauly, P. Wouters | Proposed Standard | May 2019 |
| 8559 | Dynamic Authorization Proxying in the Remote Authentication Dial-In User Service (RADIUS) ProtocolA. DeKok, J. Korhonen | Proposed Standard | April 2019 |
| 8555 | Automatic Certificate Management Environment (ACME)R. Barnes, J. Hoffman-Andrews, D. McCarney, J. Kasten | Proposed Standard | March 2019 |
| 8551 | Secure/Multipurpose Internet Mail Extensions (S/MIME) Version 4.0 Message SpecificationJ. Schaad, B. Ramsdell, S. Turner | Proposed Standard | April 2019 |
| 8550 | Secure/Multipurpose Internet Mail Extensions (S/MIME) Version 4.0 Certificate HandlingJ. Schaad, B. Ramsdell, S. Turner | Proposed Standard | April 2019 |
| 8473 | Token Binding over HTTPA. Popov, M. Nystroem, D. Balfanz, Ed., N. Harper, J. Hodges | Proposed Standard | October 2018 |
| 8472 | Transport Layer Security (TLS) Extension for Token Binding Protocol NegotiationA. Popov, Ed., M. Nystroem, D. Balfanz | Proposed Standard | October 2018 |
| 8471 | The Token Binding Protocol Version 1.0A. Popov, Ed., M. Nystroem, D. Balfanz, J. Hodges | Proposed Standard | October 2018 |
| 8461 | SMTP MTA Strict Transport Security (MTA-STS)D. Margolis, M. Risher, B. Ramakrishnan, A. Brotman, J. Jones | Proposed Standard | September 2018 |
| 8460 | SMTP TLS ReportingD. Margolis, A. Brotman, B. Ramakrishnan, J. Jones, M. Risher | Proposed Standard | September 2018 |
| 8449 | Record Size Limit Extension for TLSM. Thomson | Proposed Standard | August 2018 |
| 8448 | Example Handshake Traces for TLS 1.3M. Thomson | Informational | January 2019 |
| 8447 | IANA Registry Updates for TLS and DTLSJ. Salowey, S. Turner | Proposed Standard | August 2018 |
| 8446 | The Transport Layer Security (TLS) Protocol Version 1.3E. Rescorla · obsoleted by RFC 9846 | Proposed Standard | August 2018 |
| 8442 | ECDHE_PSK with AES-GCM and AES-CCM Cipher Suites for TLS 1.2 and DTLS 1.2J. Mattsson, D. Migault | Proposed Standard | September 2018 |
| 8429 | Deprecate Triple-DES (3DES) and RC4 in KerberosB. Kaduk, M. Short | Best Current Practice | October 2018 |
| 8422 | Elliptic Curve Cryptography (ECC) Cipher Suites for Transport Layer Security (TLS) Versions 1.2 and EarlierY. Nir, S. Josefsson, M. Pegourie-Gonnard · obsoleted by RFC 9846 | Proposed Standard | August 2018 |
| 8420 | Using the Edwards-Curve Digital Signature Algorithm (EdDSA) in the Internet Key Exchange Protocol Version 2 (IKEv2)Y. Nir | Proposed Standard | August 2018 |
| 8419 | Use of Edwards-Curve Digital Signature Algorithm (EdDSA) Signatures in the Cryptographic Message Syntax (CMS)R. Housley | Proposed Standard | August 2018 |
| 8418 | Use of the Elliptic Curve Diffie-Hellman Key Agreement Algorithm with X25519 and X448 in the Cryptographic Message Syntax (CMS)R. Housley | Proposed Standard | August 2018 |
| 8417 | Security Event Token (SET)P. Hunt, Ed., M. Jones, W. Denniss, M. Ansari | Proposed Standard | July 2018 |
| 8414 | OAuth 2.0 Authorization Server MetadataM. Jones, N. Sakimura, J. Bradley | Proposed Standard | June 2018 |
| 8412 | Software Inventory Message and Attributes (SWIMA) for PA-TNCC. Schmidt, D. Haynes, C. Coffin, D. Waltermire, J. Fitzgerald-McKay | Proposed Standard | July 2018 |
| 8411 | IANA Registration for the Cryptographic Algorithm Object Identifier RangeJ. Schaad, R. Andrews | Informational | August 2018 |
| 8410 | Algorithm Identifiers for Ed25519, Ed448, X25519, and X448 for Use in the Internet X.509 Public Key InfrastructureS. Josefsson, J. Schaad | Proposed Standard | August 2018 |
| 8399 | Internationalization Updates to RFC 5280R. Housley · obsoleted by RFC 9549 | Proposed Standard | May 2018 |
| 8398 | Internationalized Email Addresses in X.509 CertificatesA. Melnikov, Ed., W. Chuang, Ed. · obsoleted by RFC 9598 | Proposed Standard | May 2018 |
| 8392 | CBOR Web Token (CWT)M. Jones, E. Wahlstroem, S. Erdtman, H. Tschofenig | Proposed Standard | May 2018 |
| 8353 | Generic Security Service API Version 2: Java Bindings UpdateM. Upadhyay, S. Malkani, W. Wang | Proposed Standard | May 2018 |
| 8332 | Use of RSA Keys with SHA-256 and SHA-512 in the Secure Shell (SSH) ProtocolD. Bider | Proposed Standard | March 2018 |
| 8329 | Framework for Interface to Network Security FunctionsD. Lopez, E. Lopez, L. Dunbar, J. Strassner, R. Kumar | Informational | February 2018 |
| 8322 | Resource-Oriented Lightweight Information Exchange (ROLIE)J. Field, S. Banghart, D. Waltermire | Proposed Standard | February 2018 |
| 8314 | Cleartext Considered Obsolete: Use of Transport Layer Security (TLS) for Email Submission and AccessK. Moore, C. Newman | Proposed Standard | January 2018 |
| 8308 | Extension Negotiation in the Secure Shell (SSH) ProtocolD. Bider | Proposed Standard | March 2018 |
| 8274 | Incident Object Description Exchange Format Usage GuidanceP. Kampanakis, M. Suzuki | Informational | November 2017 |
| 8270 | Increase the Secure Shell Minimum Recommended Diffie-Hellman Modulus Size to 2048 BitsL. Velvindron, M. Baushke | Proposed Standard | December 2017 |
| 8268 | More Modular Exponentiation (MODP) Diffie-Hellman (DH) Key Exchange (KEX) Groups for Secure Shell (SSH)M. Baushke | Proposed Standard | December 2017 |
| 8252 | OAuth 2.0 for Native AppsW. Denniss, J. Bradley | Best Current Practice | October 2017 |
| 8248 | Security Automation and Continuous Monitoring (SACM) RequirementsN. Cam-Winget, L. Lorenzin | Informational | September 2017 |
| 8247 | Algorithm Implementation Requirements and Usage Guidance for the Internet Key Exchange Protocol Version 2 (IKEv2)Y. Nir, T. Kivinen, P. Wouters, D. Migault | Proposed Standard | September 2017 |
| 8229 | TCP Encapsulation of IKE and IPsec PacketsT. Pauly, S. Touati, R. Mantha · obsoleted by RFC 9329 | Proposed Standard | August 2017 |
| 8221 | Cryptographic Algorithm Implementation Requirements and Usage Guidance for Encapsulating Security Payload (ESP) and Authentication Header (AH)P. Wouters, D. Migault, J. Mattsson, Y. Nir, T. Kivinen | Proposed Standard | October 2017 |
| 8192 | Interface to Network Security Functions (I2NSF): Problem Statement and Use CasesS. Hares, D. Lopez, M. Zarny, C. Jacquenet, R. Kumar, J. Jeong | Informational | July 2017 |
| 8176 | Authentication Method Reference ValuesM. Jones, P. Hunt, A. Nadalin | Proposed Standard | June 2017 |
| 8162 | Using Secure DNS to Associate Certificates with Domain Names for S/MIMEP. Hoffman, J. Schlyter | Experimental | May 2017 |
| 8152 | CBOR Object Signing and Encryption (COSE)J. Schaad · obsoleted by RFC 9052, RFC 9053 | Proposed Standard | July 2017 |
| 8134 | Management Incident Lightweight Exchange (MILE) Implementation ReportC. Inacio, D. Miyamoto | Informational | May 2017 |
| 8129 | Authentication Indicator in Kerberos TicketsA. Jain, N. Kinder, N. McCallum | Proposed Standard | March 2017 |
| 8121 | Mutual Authentication Protocol for HTTP: Cryptographic Algorithms Based on the Key Agreement Mechanism 3 (KAM3)Y. Oiwa, H. Watanabe, H. Takagi, K. Maeda, T. Hayashi, Y. Ioku | Experimental | April 2017 |
| 8120 | Mutual Authentication Protocol for HTTPY. Oiwa, H. Watanabe, H. Takagi, K. Maeda, T. Hayashi, Y. Ioku | Experimental | April 2017 |
| 8103 | Using ChaCha20-Poly1305 Authenticated Encryption in the Cryptographic Message Syntax (CMS)R. Housley | Proposed Standard | February 2017 |
| 8080 | Edwards-Curve Digital Security Algorithm (EdDSA) for DNSSECO. Sury, R. Edmonds | Proposed Standard | February 2017 |
| 8070 | Public Key Cryptography for Initial Authentication in Kerberos (PKINIT) Freshness ExtensionM. Short, Ed., S. Moore, P. Miller | Proposed Standard | February 2017 |
| 8062 | Anonymity Support for KerberosL. Zhu, P. Leach, S. Hartman, S. Emery, Ed. | Proposed Standard | February 2017 |
| 8053 | HTTP Authentication Extensions for Interactive ClientsY. Oiwa, H. Watanabe, H. Takagi, K. Maeda, T. Hayashi, Y. Ioku | Experimental | January 2017 |
| 8045 | RADIUS Extensions for IP Port Configuration and ReportingD. Cheng, J. Korhonen, M. Boucadair, S. Sivakumar | Proposed Standard | January 2017 |
| 8044 | Data Types in RADIUSA. DeKok | Proposed Standard | January 2017 |
| 8037 | CFRG Elliptic Curve Diffie-Hellman (ECDH) and Signatures in JSON Object Signing and Encryption (JOSE)I. Liusvaara | Proposed Standard | January 2017 |
| 8031 | Curve25519 and Curve448 for the Internet Key Exchange Protocol Version 2 (IKEv2) Key AgreementY. Nir, S. Josefsson | Proposed Standard | December 2016 |
| 8019 | Protecting Internet Key Exchange Protocol Version 2 (IKEv2) Implementations from Distributed Denial-of-Service AttacksY. Nir, V. Smyslov | Proposed Standard | November 2016 |
| 8009 | AES Encryption with HMAC-SHA2 for Kerberos 5M. Jenkins, M. Peck, K. Burgin | Informational | October 2016 |
| 7970 | The Incident Object Description Exchange Format Version 2R. Danyliw | Proposed Standard | November 2016 |
| 7930 | Larger Packets for RADIUS over TCPS. Hartman | Experimental | August 2016 |
| 7929 | DNS-Based Authentication of Named Entities (DANE) Bindings for OpenPGPP. Wouters | Experimental | August 2016 |
| 7925 | Transport Layer Security (TLS) / Datagram Transport Layer Security (DTLS) Profiles for the Internet of ThingsH. Tschofenig, Ed., T. Fossati | Proposed Standard | July 2016 |
| 7924 | Transport Layer Security (TLS) Cached Information ExtensionS. Santesson, H. Tschofenig | Proposed Standard | July 2016 |
| 7919 | Negotiated Finite Field Diffie-Hellman Ephemeral Parameters for Transport Layer Security (TLS)D. Gillmor | Proposed Standard | August 2016 |
| 7918 | Transport Layer Security (TLS) False StartA. Langley, N. Modadugu, B. Moeller | Informational | August 2016 |
| 7905 | ChaCha20-Poly1305 Cipher Suites for Transport Layer Security (TLS)A. Langley, W. Chang, N. Mavrogiannopoulos, J. Strombergson, S. Josefsson | Proposed Standard | June 2016 |
| 7833 | A RADIUS Attribute, Binding, Profiles, Name Identifier Format, and Confirmation Methods for the Security Assertion Markup Language (SAML)J. Howlett, S. Hartman, A. Perez-Mendez, Ed. | Proposed Standard | May 2016 |
| 7832 | Application Bridging for Federated Access Beyond Web (ABFAB) Use CasesR. Smith, Ed. | Informational | May 2016 |
| 7831 | Application Bridging for Federated Access Beyond Web (ABFAB) ArchitectureJ. Howlett, S. Hartman, H. Tschofenig, J. Schaad | Informational | May 2016 |
| 7817 | Updated Transport Layer Security (TLS) Server Identity Check Procedure for Email-Related ProtocolsA. Melnikov | Proposed Standard | March 2016 |
| 7804 | Salted Challenge Response HTTP Authentication MechanismA. Melnikov | Experimental | March 2016 |
| 7802 | A Pseudo-Random Function (PRF) for the Kerberos V Generic Security Service Application Program Interface (GSS-API) MechanismS. Emery, N. Williams | Proposed Standard | March 2016 |
| 7800 | Proof-of-Possession Key Semantics for JSON Web Tokens (JWTs)M. Jones, J. Bradley, H. Tschofenig | Proposed Standard | April 2016 |
| 7797 | JSON Web Signature (JWS) Unencoded Payload OptionM. Jones | Proposed Standard | February 2016 |
| 7751 | Kerberos Authorization Data Container Authenticated by Multiple Message Authentication Codes (MACs)S. Sorce, T. Yu | Proposed Standard | March 2016 |
| 7744 | Use Cases for Authentication and Authorization in Constrained EnvironmentsL. Seitz, Ed., S. Gerdes, Ed., G. Selander, M. Mani, S. Kumar | Informational | January 2016 |
| 7685 | A Transport Layer Security (TLS) ClientHello Padding ExtensionA. Langley | Proposed Standard | October 2015 |
| 7673 | Using DNS-Based Authentication of Named Entities (DANE) TLSA Records with SRV RecordsT. Finch, M. Miller, P. Saint-Andre | Proposed Standard | October 2015 |
| 7672 | SMTP Security via Opportunistic DNS-Based Authentication of Named Entities (DANE) Transport Layer Security (TLS)V. Dukhovni, W. Hardaker | Proposed Standard | October 2015 |
| 7671 | The DNS-Based Authentication of Named Entities (DANE) Protocol: Updates and Operational GuidanceV. Dukhovni, W. Hardaker | Proposed Standard | October 2015 |
| 7662 | OAuth 2.0 Token IntrospectionJ. Richer, Ed. | Proposed Standard | October 2015 |
| 7644 | System for Cross-domain Identity Management: ProtocolP. Hunt, Ed., K. Grizzle, M. Ansari, E. Wahlstroem, C. Mortimore | Proposed Standard | September 2015 |
| 7643 | System for Cross-domain Identity Management: Core SchemaP. Hunt, Ed., K. Grizzle, E. Wahlstroem, C. Mortimore | Proposed Standard | September 2015 |
| 7642 | System for Cross-domain Identity Management: Definitions, Overview, Concepts, and RequirementsK. LI, Ed., P. Hunt, B. Khasnabish, A. Nadalin, Z. Zeltsan | Informational | September 2015 |
| 7638 | JSON Web Key (JWK) ThumbprintM. Jones, N. Sakimura | Proposed Standard | September 2015 |
| 7636 | Proof Key for Code Exchange by OAuth Public ClientsN. Sakimura, Ed., J. Bradley, N. Agarwal | Proposed Standard | September 2015 |
| 7634 | ChaCha20, Poly1305, and Their Use in the Internet Key Exchange Protocol (IKE) and IPsecY. Nir | Proposed Standard | August 2015 |
| 7632 | Endpoint Security Posture Assessment: Enterprise Use CasesD. Waltermire, D. Harrington | Informational | September 2015 |
| 7628 | A Set of Simple Authentication and Security Layer (SASL) Mechanisms for OAuthW. Mills, T. Showalter, H. Tschofenig | Proposed Standard | August 2015 |
| 7627 | Transport Layer Security (TLS) Session Hash and Extended Master Secret ExtensionK. Bhargavan, Ed., A. Delignat-Lavaud, A. Pironti, A. Langley, M. Ray · obsoleted by RFC 9846 | Proposed Standard | September 2015 |
| 7619 | The NULL Authentication Method in the Internet Key Exchange Protocol Version 2 (IKEv2)V. Smyslov, P. Wouters | Proposed Standard | August 2015 |
| 7617 | The 'Basic' HTTP Authentication SchemeJ. Reschke | Proposed Standard | September 2015 |
| 7616 | HTTP Digest Access AuthenticationR. Shekh-Yusef, Ed., D. Ahrens, S. Bremer | Proposed Standard | September 2015 |
| 7592 | OAuth 2.0 Dynamic Client Registration Management ProtocolJ. Richer, Ed., M. Jones, J. Bradley, M. Machulak | Experimental | July 2015 |
| 7591 | OAuth 2.0 Dynamic Client Registration ProtocolJ. Richer, Ed., M. Jones, J. Bradley, M. Machulak, P. Hunt | Proposed Standard | July 2015 |
| 7590 | Use of Transport Layer Security (TLS) in the Extensible Messaging and Presence Protocol (XMPP)P. Saint-Andre, T. Alkemade | Proposed Standard | June 2015 |
| 7585 | Dynamic Peer Discovery for RADIUS/TLS and RADIUS/DTLS Based on the Network Access Identifier (NAI)S. Winter, M. McCauley | Experimental | October 2015 |
| 7568 | Deprecating Secure Sockets Layer Version 3.0R. Barnes, M. Thomson, A. Pironti, A. Langley | Proposed Standard | June 2015 |
| 7546 | Structure of the Generic Security Service (GSS) Negotiation LoopB. Kaduk | Informational | May 2015 |
| 7542 | The Network Access IdentifierA. DeKok | Proposed Standard | May 2015 |
| 7525 | Recommendations for Secure Use of Transport Layer Security (TLS) and Datagram Transport Layer Security (DTLS)Y. Sheffer, R. Holz, P. Saint-Andre · obsoleted by RFC 9325 | Best Current Practice | May 2015 |
| 7523 | JSON Web Token (JWT) Profile for OAuth 2.0 Client Authentication and Authorization GrantsM. Jones, B. Campbell, C. Mortimore | Proposed Standard | May 2015 |
| 7522 | Security Assertion Markup Language (SAML) 2.0 Profile for OAuth 2.0 Client Authentication and Authorization GrantsB. Campbell, C. Mortimore, M. Jones | Proposed Standard | May 2015 |
| 7521 | Assertion Framework for OAuth 2.0 Client Authentication and Authorization GrantsB. Campbell, C. Mortimore, M. Jones, Y. Goland | Proposed Standard | May 2015 |
| 7520 | Examples of Protecting Content Using JSON Object Signing and Encryption (JOSE)M. Miller | Informational | May 2015 |
| 7519 | JSON Web Token (JWT)M. Jones, J. Bradley, N. Sakimura | Proposed Standard | May 2015 |
| 7518 | JSON Web Algorithms (JWA)M. Jones | Proposed Standard | May 2015 |
| 7517 | JSON Web Key (JWK)M. Jones | Proposed Standard | May 2015 |
| 7516 | JSON Web Encryption (JWE)M. Jones, J. Hildebrand | Proposed Standard | May 2015 |
| 7515 | JSON Web Signature (JWS)M. Jones, J. Bradley, N. Sakimura | Proposed Standard | May 2015 |
| 7507 | TLS Fallback Signaling Cipher Suite Value (SCSV) for Preventing Protocol Downgrade AttacksB. Moeller, A. Langley · obsoleted by RFC 8996 | Proposed Standard | April 2015 |
| 7499 | Support of Fragmentation of RADIUS PacketsA. Perez-Mendez, Ed., R. Marin-Lopez, F. Pereniguez-Garcia, G. Lopez-Millan, D. Lopez, A. DeKok | Experimental | April 2015 |
| 7495 | Enumeration Reference Format for the Incident Object Description Exchange Format (IODEF)A. Montville, D. Black | Proposed Standard | March 2015 |
| 7486 | HTTP Origin-Bound Authentication (HOBA)S. Farrell, P. Hoffman, M. Thomas | Experimental | March 2015 |
| 7465 | Prohibiting RC4 Cipher SuitesA. Popov | Proposed Standard | February 2015 |
| 7457 | Summarizing Known Attacks on Transport Layer Security (TLS) and Datagram TLS (DTLS)Y. Sheffer, R. Holz, P. Saint-Andre | Informational | February 2015 |
| 7427 | Signature Authentication in the Internet Key Exchange Version 2 (IKEv2)T. Kivinen, J. Snyder | Proposed Standard | January 2015 |
| 7383 | Internet Key Exchange Protocol Version 2 (IKEv2) Message FragmentationV. Smyslov | Proposed Standard | November 2014 |
| 7366 | Encrypt-then-MAC for Transport Layer Security (TLS) and Datagram Transport Layer Security (DTLS)P. Gutmann | Proposed Standard | September 2014 |
| 7360 | Datagram Transport Layer Security (DTLS) as a Transport Layer for RADIUSA. DeKok | Experimental | September 2014 |
| 7321 | Cryptographic Algorithm Implementation Requirements and Usage Guidance for Encapsulating Security Payload (ESP) and Authentication Header (AH)D. McGrew, P. Hoffman · obsoleted by RFC 8221 | Proposed Standard | August 2014 |
| 7301 | Transport Layer Security (TLS) Application-Layer Protocol Negotiation ExtensionS. Friedl, A. Popov, A. Langley, E. Stephan | Proposed Standard | July 2014 |
| 7296 | Internet Key Exchange Protocol Version 2 (IKEv2)C. Kaufman, P. Hoffman, Y. Nir, P. Eronen, T. Kivinen | Internet Standard | October 2014 |
| 7268 | RADIUS Attributes for IEEE 802 NetworksB. Aboba, J. Malinen, P. Congdon, J. Salowey, M. Jones | Proposed Standard | July 2014 |
| 7250 | Using Raw Public Keys in Transport Layer Security (TLS) and Datagram Transport Layer Security (DTLS)P. Wouters, Ed., H. Tschofenig, Ed., J. Gilmore, S. Weiler, T. Kivinen | Proposed Standard | June 2014 |
| 7218 | Adding Acronyms to Simplify Conversations about DNS-Based Authentication of Named Entities (DANE)O. Gudmundsson | Proposed Standard | April 2014 |
| 7203 | An Incident Object Description Exchange Format (IODEF) Extension for Structured Cybersecurity InformationT. Takahashi, K. Landfield, Y. Kadobayashi | Proposed Standard | April 2014 |
| 7171 | PT-EAP: Posture Transport (PT) Protocol for Extensible Authentication Protocol (EAP) Tunnel MethodsN. Cam-Winget, P. Sangster | Proposed Standard | May 2014 |
| 7170 | Tunnel Extensible Authentication Protocol (TEAP) Version 1H. Zhou, N. Cam-Winget, J. Salowey, S. Hanna · obsoleted by RFC 9930 | Proposed Standard | May 2014 |
| 7165 | Use Cases and Requirements for JSON Object Signing and Encryption (JOSE)R. Barnes | Informational | April 2014 |
| 7057 | Update to the Extensible Authentication Protocol (EAP) Applicability Statement for Application Bridging for Federated Access Beyond Web (ABFAB)S. Winter, J. Salowey | Proposed Standard | December 2013 |
| 7056 | Name Attributes for the GSS-API Extensible Authentication Protocol (EAP) MechanismS. Hartman, J. Howlett | Proposed Standard | December 2013 |
| 7055 | A GSS-API Mechanism for the Extensible Authentication ProtocolS. Hartman, Ed., J. Howlett | Proposed Standard | December 2013 |
| 7030 | Enrollment over Secure TransportM. Pritikin, Ed., P. Yee, Ed., D. Harkins, Ed. | Proposed Standard | October 2013 |
| 7029 | Extensible Authentication Protocol (EAP) Mutual Cryptographic BindingS. Hartman, M. Wasserman, D. Zhang | Informational | October 2013 |
| 7018 | Auto-Discovery VPN Problem Statement and RequirementsV. Manral, S. Hanna | Informational | September 2013 |
| 7009 | OAuth 2.0 Token RevocationT. Lodderstedt, Ed., S. Dronia, M. Scurtescu | Proposed Standard | August 2013 |
| 6989 | Additional Diffie-Hellman Tests for the Internet Key Exchange Protocol Version 2 (IKEv2)Y. Sheffer, S. Fluhrer | Proposed Standard | July 2013 |
| 6961 | The Transport Layer Security (TLS) Multiple Certificate Status Request ExtensionY. Pettersen · obsoleted by RFC 8446, RFC 9846 | Proposed Standard | June 2013 |
| 6960 | X.509 Internet Public Key Infrastructure Online Certificate Status Protocol - OCSPS. Santesson, M. Myers, R. Ankney, A. Malpani, S. Galperin, C. Adams | Proposed Standard | June 2013 |
| 6929 | Remote Authentication Dial In User Service (RADIUS) Protocol ExtensionsA. DeKok, A. Lior | Proposed Standard | April 2013 |
| 6911 | RADIUS Attributes for IPv6 Access NetworksW. Dec, Ed., B. Sarikaya, G. Zorn, Ed., D. Miles, B. Lourdelet | Proposed Standard | April 2013 |
| 6880 | An Information Model for Kerberos Version 5L. Johansson | Proposed Standard | March 2013 |
| 6876 | A Posture Transport Protocol over TLS (PT-TLS)P. Sangster, N. Cam-Winget, J. Salowey | Proposed Standard | February 2013 |
| 6844 | DNS Certification Authority Authorization (CAA) Resource RecordP. Hallam-Baker, R. Stradling · obsoleted by RFC 8659 | Proposed Standard | January 2013 |
| 6819 | OAuth 2.0 Threat Model and Security ConsiderationsT. Lodderstedt, Ed., M. McGloin, P. Hunt | Informational | January 2013 |
| 6818 | Updates to the Internet X.509 Public Key Infrastructure Certificate and Certificate Revocation List (CRL) ProfileP. Yee | Proposed Standard | January 2013 |
| 6813 | The Network Endpoint Assessment (NEA) Asokan Attack AnalysisJ. Salowey, S. Hanna | Informational | December 2012 |
| 6806 | Kerberos Principal Name Canonicalization and Cross-Realm ReferralsS. Hartman, Ed., K. Raeburn, L. Zhu | Proposed Standard | November 2012 |
| 6803 | Camellia Encryption for Kerberos 5G. Hudson | Informational | November 2012 |
| 6784 | Kerberos Options for DHCPv6S. Sakane, M. Ishiyama | Proposed Standard | November 2012 |
| 6755 | An IETF URN Sub-Namespace for OAuthB. Campbell, H. Tschofenig | Informational | October 2012 |
| 6750 | The OAuth 2.0 Authorization Framework: Bearer Token UsageM. Jones, D. Hardt | Proposed Standard | October 2012 |
| 6749 | The OAuth 2.0 Authorization FrameworkD. Hardt, Ed. | Proposed Standard | October 2012 |
| 6712 | Internet X.509 Public Key Infrastructure -- HTTP Transfer for the Certificate Management Protocol (CMP)T. Kause, M. Peylo · obsoleted by RFC 9811 | Proposed Standard | September 2012 |
| 6698 | The DNS-Based Authentication of Named Entities (DANE) Transport Layer Security (TLS) Protocol: TLSAP. Hoffman, J. Schlyter | Proposed Standard | August 2012 |
| 6697 | Handover Keying (HOKEY) Architecture DesignG. Zorn, Ed., Q. Wu, T. Taylor, Y. Nir, K. Hoeper, S. Decugis | Informational | July 2012 |
| 6696 | EAP Extensions for the EAP Re-authentication Protocol (ERP)Z. Cao, B. He, Y. Shi, Q. Wu, Ed., G. Zorn, Ed. | Proposed Standard | July 2012 |
| 6685 | Expert Review for Incident Object Description Exchange Format (IODEF) Extensions in IANA XML RegistryB. Trammell · obsoleted by RFC 7970 | Proposed Standard | July 2012 |
| 6684 | Guidelines and Template for Defining Extensions to the Incident Object Description Exchange Format (IODEF)B. Trammell | Informational | July 2012 |
| 6680 | Generic Security Service Application Programming Interface (GSS-API) Naming ExtensionsN. Williams, L. Johansson, S. Hartman, S. Josefsson | Proposed Standard | August 2012 |
| 6678 | Requirements for a Tunnel-Based Extensible Authentication Protocol (EAP) MethodK. Hoeper, S. Hanna, H. Zhou, J. Salowey, Ed. | Informational | July 2012 |
| 6677 | Channel-Binding Support for Extensible Authentication Protocol (EAP) MethodsS. Hartman, Ed., T. Clancy, K. Hoeper | Proposed Standard | July 2012 |
| 6664 | S/MIME Capabilities for Public Key DefinitionsJ. Schaad | Informational | July 2012 |
| 6649 | Deprecate DES, RC4-HMAC-EXP, and Other Weak Cryptographic Algorithms in KerberosL. Hornquist Astrand, T. Yu | Best Current Practice | July 2012 |
| 6630 | EAP Re-authentication Protocol Extensions for Authenticated Anticipatory Keying (ERP/AAK)Z. Cao, H. Deng, Q. Wu, G. Zorn, Ed. | Proposed Standard | June 2012 |
| 6616 | A Simple Authentication and Security Layer (SASL) and Generic Security Service Application Program Interface (GSS-API) Mechanism for OpenIDE. Lear, H. Tschofenig, H. Mauldin, S. Josefsson | Proposed Standard | May 2012 |
| 6614 | Transport Layer Security (TLS) Encryption for RADIUSS. Winter, M. McCauley, S. Venaas, K. Wierenga | Experimental | May 2012 |
| 6613 | RADIUS over TCPA. DeKok | Experimental | May 2012 |
| 6595 | A Simple Authentication and Security Layer (SASL) and GSS-API Mechanism for the Security Assertion Markup Language (SAML)K. Wierenga, E. Lear, S. Josefsson | Proposed Standard | April 2012 |
| 6560 | One-Time Password (OTP) Pre-AuthenticationG. Richards | Proposed Standard | April 2012 |
| 6546 | Transport of Real-time Inter-network Defense (RID) Messages over HTTP/TLSB. Trammell | Proposed Standard | April 2012 |
| 6545 | Real-time Inter-network Defense (RID)K. Moriarty | Proposed Standard | April 2012 |
| 6542 | Kerberos Version 5 Generic Security Service Application Program Interface (GSS-API) Channel Binding Hash AgilityS. Emery | Proposed Standard | March 2012 |
| 6520 | Transport Layer Security (TLS) and Datagram Transport Layer Security (DTLS) Heartbeat ExtensionR. Seggelmann, M. Tuexen, M. Williams | Proposed Standard | February 2012 |
| 6448 | The Unencrypted Form of Kerberos 5 KRB-CRED MessageR. Yount | Proposed Standard | November 2011 |
| 6440 | The EAP Re-authentication Protocol (ERP) Local Domain Name DHCPv6 OptionG. Zorn, Q. Wu, Y. Wang | Proposed Standard | December 2011 |
| 6421 | Crypto-Agility Requirements for Remote Authentication Dial-In User Service (RADIUS)D. Nelson, Ed. | Informational | November 2011 |
| 6407 | The Group Domain of InterpretationB. Weis, S. Rowles, T. Hardjono · obsoleted by RFC 9838 | Proposed Standard | October 2011 |
| 6402 | Certificate Management over CMS (CMC) UpdatesJ. Schaad · obsoleted by RFC 10002, RFC 10003, RFC 10004 | Proposed Standard | November 2011 |
| 6394 | Use Cases and Requirements for DNS-Based Authentication of Named Entities (DANE)R. Barnes | Informational | October 2011 |
| 6347 | Datagram Transport Layer Security Version 1.2E. Rescorla, N. Modadugu · obsoleted by RFC 9147 | Proposed Standard | January 2012 |
| 6331 | Moving DIGEST-MD5 to HistoricA. Melnikov | Informational | July 2011 |
| 6311 | Protocol Support for High Availability of IKEv2/IPsecR. Singh, Ed., G. Kalyani, Y. Nir, Y. Sheffer, D. Zhang | Proposed Standard | July 2011 |
| 6290 | A Quick Crash Detection Method for the Internet Key Exchange Protocol (IKE)Y. Nir, Ed., D. Wierbowski, F. Detienne, P. Sethi | Proposed Standard | June 2011 |
| 6277 | Online Certificate Status Protocol Algorithm AgilityS. Santesson, P. Hallam-Baker · obsoleted by RFC 6960 | Proposed Standard | June 2011 |
| 6251 | Using Kerberos Version 5 over the Transport Layer Security (TLS) ProtocolS. Josefsson | Informational | May 2011 |
| 6176 | Prohibiting Secure Sockets Layer (SSL) Version 2.0S. Turner, T. Polk | Proposed Standard | March 2011 |
| 6170 | Internet X.509 Public Key Infrastructure -- Certificate ImageS. Santesson, R. Housley, S. Bajaj, L. Rosenthol · obsoleted by RFC 9399 | Proposed Standard | May 2011 |
| 6158 | RADIUS Design GuidelinesA. DeKok, Ed., G. Weber | Best Current Practice | March 2011 |
| 6113 | A Generalized Framework for Kerberos Pre-AuthenticationS. Hartman, L. Zhu | Proposed Standard | April 2011 |
| 6112 | Anonymity Support for KerberosL. Zhu, P. Leach, S. Hartman · obsoleted by RFC 8062 | Historic | April 2011 |
| 6111 | Additional Kerberos Naming ConstraintsL. Zhu | Proposed Standard | April 2011 |
| 6071 | IP Security (IPsec) and Internet Key Exchange (IKE) Document RoadmapS. Frankel, S. Krishnan | Informational | February 2011 |
| 6066 | Transport Layer Security (TLS) Extensions: Extension DefinitionsD. Eastlake 3rd | Proposed Standard | January 2011 |
| 6063 | Dynamic Symmetric Key Provisioning Protocol (DSKPP)A. Doherty, M. Pei, S. Machani, M. Nystrom | Proposed Standard | December 2010 |
| 6054 | Using Counter Modes with Encapsulating Security Payload (ESP) and Authentication Header (AH) to Protect Group TrafficD. McGrew, B. Weis | Proposed Standard | November 2010 |
| 6031 | Cryptographic Message Syntax (CMS) Symmetric Key Package Content TypeS. Turner, R. Housley | Proposed Standard | December 2010 |
| 6030 | Portable Symmetric Key Container (PSKC)P. Hoyer, M. Pei, S. Machani | Proposed Standard | October 2010 |
| 6027 | IPsec Cluster Problem StatementY. Nir | Informational | October 2010 |
| 6025 | ASN.1 TranslationC. Wallace, C. Gardiner | Informational | October 2010 |
| 6024 | Trust Anchor Management RequirementsR. Reddy, C. Wallace | Informational | October 2010 |
| 6012 | Datagram Transport Layer Security (DTLS) Transport Mapping for SyslogJ. Salowey, T. Petch, R. Gerhards, H. Feng | Proposed Standard | October 2010 |
| 5998 | An Extension for EAP-Only Authentication in IKEv2P. Eronen, H. Tschofenig, Y. Sheffer | Proposed Standard | September 2010 |
| 5997 | Use of Status-Server Packets in the Remote Authentication Dial In User Service (RADIUS) ProtocolA. DeKok | Informational | August 2010 |
| 5996 | Internet Key Exchange Protocol Version 2 (IKEv2)C. Kaufman, P. Hoffman, Y. Nir, P. Eronen · obsoleted by RFC 7296 | Proposed Standard | September 2010 |
| 5990 | Use of the RSA-KEM Key Transport Algorithm in the Cryptographic Message Syntax (CMS)J. Randall, B. Kaliski, J. Brainard, S. Turner · obsoleted by RFC 9690 | Proposed Standard | September 2010 |
| 5934 | Trust Anchor Management Protocol (TAMP)R. Housley, S. Ashmore, C. Wallace | Proposed Standard | August 2010 |
| 5930 | Using Advanced Encryption Standard Counter Mode (AES-CTR) with the Internet Key Exchange version 02 (IKEv2) ProtocolS. Shen, Y. Mao, NSS. Murthy | Informational | July 2010 |
| 5914 | Trust Anchor FormatR. Housley, S. Ashmore, C. Wallace | Proposed Standard | June 2010 |
| 5913 | Clearance Attribute and Authority Clearance Constraints Certificate ExtensionS. Turner, S. Chokhani | Proposed Standard | June 2010 |
| 5912 | New ASN.1 Modules for the Public Key Infrastructure Using X.509 (PKIX)P. Hoffman, J. Schaad | Informational | June 2010 |
| 5911 | New ASN.1 Modules for Cryptographic Message Syntax (CMS) and S/MIMEP. Hoffman, J. Schaad | Informational | June 2010 |
| 5879 | Heuristics for Detecting ESP-NULL PacketsT. Kivinen, D. McDonald | Informational | May 2010 |
| 5877 | The application/pkix-attr-cert Media Type for Attribute CertificatesR. Housley | Informational | May 2010 |
| 5868 | Problem Statement on the Cross-Realm Operation of KerberosS. Sakane, K. Kamada, S. Zrelli, M. Ishiyama | Informational | May 2010 |
| 5848 | Signed Syslog MessagesJ. Kelsey, J. Callas, A. Clemm | Proposed Standard | May 2010 |
| 5840 | Wrapped Encapsulating Security Payload (ESP) for Traffic VisibilityK. Grewal, G. Montenegro, M. Bhatia | Proposed Standard | April 2010 |
| 5836 | Extensible Authentication Protocol (EAP) Early Authentication Problem StatementY. Ohba, Ed., Q. Wu, Ed., G. Zorn, Ed. | Informational | April 2010 |
| 5816 | ESSCertIDv2 Update for RFC 3161S. Santesson, N. Pope | Proposed Standard | April 2010 |
| 5802 | Salted Challenge Response Authentication Mechanism (SCRAM) SASL and GSS-API MechanismsC. Newman, A. Menon-Sen, A. Melnikov, N. Williams | Proposed Standard | July 2010 |
| 5801 | Using Generic Security Service Application Program Interface (GSS-API) Mechanisms in Simple Authentication and Security Layer (SASL): The GS2 Mechanism FamilyS. Josefsson, N. Williams | Proposed Standard | July 2010 |
| 5793 | PB-TNC: A Posture Broker (PB) Protocol Compatible with Trusted Network Connect (TNC)R. Sahita, S. Hanna, R. Hurst, K. Narayan | Proposed Standard | March 2010 |
| 5792 | PA-TNC: A Posture Attribute (PA) Protocol Compatible with Trusted Network Connect (TNC)P. Sangster, K. Narayan | Proposed Standard | March 2010 |
| 5776 | Use of Timed Efficient Stream Loss-Tolerant Authentication (TESLA) in the Asynchronous Layered Coding (ALC) and NACK-Oriented Reliable Multicast (NORM) ProtocolsV. Roca, A. Francillon, S. Faurite | Experimental | April 2010 |
| 5758 | Internet X.509 Public Key Infrastructure: Additional Algorithms and Identifiers for DSA and ECDSAQ. Dang, S. Santesson, K. Moriarty, D. Brown, T. Polk | Proposed Standard | January 2010 |
| 5756 | Updates for RSAES-OAEP and RSASSA-PSS Algorithm ParametersS. Turner, D. Brown, K. Yiu, R. Housley, T. Polk | Proposed Standard | January 2010 |
| 5755 | An Internet Attribute Certificate Profile for AuthorizationS. Farrell, R. Housley, S. Turner | Proposed Standard | January 2010 |
| 5754 | Using SHA2 Algorithms with Cryptographic Message SyntaxS. Turner | Proposed Standard | January 2010 |
| 5753 | Use of Elliptic Curve Cryptography (ECC) Algorithms in Cryptographic Message Syntax (CMS)S. Turner, D. Brown | Informational | January 2010 |
| 5752 | Multiple Signatures in Cryptographic Message Syntax (CMS)S. Turner, J. Schaad | Proposed Standard | January 2010 |
| 5751 | Secure/Multipurpose Internet Mail Extensions (S/MIME) Version 3.2 Message SpecificationB. Ramsdell, S. Turner · obsoleted by RFC 8551 | Proposed Standard | January 2010 |
| 5750 | Secure/Multipurpose Internet Mail Extensions (S/MIME) Version 3.2 Certificate HandlingB. Ramsdell, S. Turner · obsoleted by RFC 8550 | Proposed Standard | January 2010 |
| 5749 | Distribution of EAP-Based Keys for Handover and Re-AuthenticationK. Hoeper, Ed., M. Nakhjiri, Y. Ohba, Ed. | Proposed Standard | March 2010 |
| 5746 | Transport Layer Security (TLS) Renegotiation Indication ExtensionE. Rescorla, M. Ray, S. Dispensa, N. Oskov | Proposed Standard | February 2010 |
| 5739 | IPv6 Configuration in Internet Key Exchange Protocol Version 2 (IKEv2)P. Eronen, J. Laganier, C. Madson | Experimental | February 2010 |
| 5723 | Internet Key Exchange Protocol Version 2 (IKEv2) Session ResumptionY. Sheffer, H. Tschofenig | Proposed Standard | January 2010 |
| 5705 | Keying Material Exporters for Transport Layer Security (TLS)E. Rescorla | Proposed Standard | March 2010 |
| 5697 | Other Certificates ExtensionS. Farrell | Experimental | November 2009 |
| 5685 | Redirect Mechanism for the Internet Key Exchange Protocol Version 2 (IKEv2)V. Devarapalli, K. Weniger | Proposed Standard | November 2009 |
| 5660 | IPsec Channels: Connection LatchingN. Williams | Proposed Standard | October 2009 |
| 5653 | Generic Security Service API Version 2: Java Bindings UpdateM. Upadhyay, S. Malkani · obsoleted by RFC 8353 | Proposed Standard | August 2009 |
| 5652 | Cryptographic Message Syntax (CMS)R. Housley | Internet Standard | September 2009 |
| 5636 | Traceable Anonymous CertificateS. Park, H. Park, Y. Won, J. Lee, S. Kent | Experimental | August 2009 |
| 5607 | Remote Authentication Dial-In User Service (RADIUS) Authorization for Network Access Server (NAS) ManagementD. Nelson, G. Weber | Proposed Standard | July 2009 |
| 5588 | Generic Security Service Application Program Interface (GSS-API) Extension for Storing Delegated CredentialsN. Williams | Proposed Standard | July 2009 |
| 5587 | Extended Generic Security Service Mechanism Inquiry APIsN. Williams | Proposed Standard | July 2009 |
| 5554 | Clarifications and Extensions to the Generic Security Service Application Program Interface (GSS-API) for the Use of Channel BindingsN. Williams | Proposed Standard | May 2009 |
| 5489 | ECDHE_PSK Cipher Suites for Transport Layer Security (TLS)M. Badra, I. Hajjeh | Informational | March 2009 |
| 5487 | Pre-Shared Key Cipher Suites for TLS with SHA-256/384 and AES Galois Counter ModeM. Badra | Proposed Standard | March 2009 |
| 5480 | Elliptic Curve Cryptography Subject Public Key InformationS. Turner, D. Brown, K. Yiu, R. Housley, T. Polk | Proposed Standard | March 2009 |
| 5469 | DES and IDEA Cipher Suites for Transport Layer Security (TLS)P. Eronen, Ed. · obsoleted by RFC 8996 | Historic | February 2009 |
| 5433 | Extensible Authentication Protocol - Generalized Pre-Shared Key (EAP-GPSK) MethodT. Clancy, H. Tschofenig | Proposed Standard | February 2009 |
| 5427 | Textual Conventions for Syslog ManagementG. Keeni | Proposed Standard | March 2009 |
| 5426 | Transmission of Syslog Messages over UDPA. Okmianski | Proposed Standard | March 2009 |
| 5425 | Transport Layer Security (TLS) Transport Mapping for SyslogF. Miao, Ed., Y. Ma, Ed., J. Salowey, Ed. | Proposed Standard | March 2009 |
| 5424 | The Syslog ProtocolR. Gerhards | Proposed Standard | March 2009 |
| 5409 | Using the Boneh-Franklin and Boneh-Boyen Identity-Based Encryption Algorithms with the Cryptographic Message Syntax (CMS)L. Martin, M. Schertler | Informational | January 2009 |
| 5408 | Identity-Based Encryption Architecture and Supporting Data StructuresG. Appenzeller, L. Martin, M. Schertler | Informational | January 2009 |
| 5387 | Problem and Applicability Statement for Better-Than-Nothing Security (BTNS)J. Touch, D. Black, Y. Wang | Informational | November 2008 |
| 5386 | Better-Than-Nothing Security: An Unauthenticated Mode of IPsecN. Williams, M. Richardson | Proposed Standard | November 2008 |
| 5374 | Multicast Extensions to the Security Architecture for the Internet ProtocolB. Weis, G. Gross, D. Ignjatic | Proposed Standard | November 2008 |
| 5349 | Elliptic Curve Cryptography (ECC) Support for Public Key Cryptography for Initial Authentication in Kerberos (PKINIT)L. Zhu, K. Jaganathan, K. Lauter | Informational | September 2008 |
| 5296 | EAP Extensions for EAP Re-authentication Protocol (ERP)V. Narayanan, L. Dondeti · obsoleted by RFC 6696 | Proposed Standard | August 2008 |
| 5295 | Specification for the Derivation of Root Keys from an Extended Master Session Key (EMSK)J. Salowey, L. Dondeti, V. Narayanan, M. Nakhjiri | Proposed Standard | August 2008 |
| 5289 | TLS Elliptic Curve Cipher Suites with SHA-256/384 and AES Galois Counter Mode (GCM)E. Rescorla | Proposed Standard | August 2008 |
| 5288 | AES Galois Counter Mode (GCM) Cipher Suites for TLSJ. Salowey, A. Choudhury, D. McGrew | Proposed Standard | August 2008 |
| 5280 | Internet X.509 Public Key Infrastructure Certificate and Certificate Revocation List (CRL) ProfileD. Cooper, S. Santesson, S. Farrell, S. Boeyen, R. Housley, W. Polk | Proposed Standard | May 2008 |
| 5275 | CMS Symmetric Key Management and DistributionS. Turner | Proposed Standard | June 2008 |
| 5274 | Certificate Management Messages over CMS (CMC): Compliance RequirementsJ. Schaad, M. Myers · obsoleted by RFC 10004 | Proposed Standard | June 2008 |
| 5273 | Certificate Management over CMS (CMC): Transport ProtocolsJ. Schaad, M. Myers · obsoleted by RFC 10003 | Proposed Standard | June 2008 |
| 5272 | Certificate Management over CMS (CMC)J. Schaad, M. Myers · obsoleted by RFC 10002 | Proposed Standard | June 2008 |
| 5246 | The Transport Layer Security (TLS) Protocol Version 1.2T. Dierks, E. Rescorla · obsoleted by RFC 8446, RFC 9846 | Proposed Standard | August 2008 |
| 5216 | The EAP-TLS Authentication ProtocolD. Simon, B. Aboba, R. Hurst | Proposed Standard | March 2008 |
| 5209 | Network Endpoint Assessment (NEA): Overview and RequirementsP. Sangster, H. Khosravi, M. Mani, K. Narayan, J. Tardo | Informational | June 2008 |
| 5197 | On the Applicability of Various Multimedia Internet KEYing (MIKEY) Modes and ExtensionsS. Fries, D. Ignjatic | Informational | June 2008 |
| 5179 | Generic Security Service Application Program Interface (GSS-API) Domain-Based Service Names Mapping for the Kerberos V GSS MechanismN. Williams | Proposed Standard | May 2008 |
| 5178 | Generic Security Service Application Program Interface (GSS-API) Internationalization and Domain-Based Service Names and Name TypeN. Williams, A. Melnikov | Proposed Standard | May 2008 |
| 5176 | Dynamic Authorization Extensions to Remote Authentication Dial In User Service (RADIUS)M. Chiba, G. Dommety, M. Eklund, D. Mitton, B. Aboba | Informational | January 2008 |
| 5169 | Handover Key Management and Re-Authentication Problem StatementT. Clancy, M. Nakhjiri, V. Narayanan, L. Dondeti | Informational | March 2008 |
| 5126 | CMS Advanced Electronic Signatures (CAdES)D. Pinkas, N. Pope, J. Ross | Informational | March 2008 |
| 5090 | RADIUS Extension for Digest AuthenticationB. Sterman, D. Sadolevsky, D. Schwartz, D. Williams, W. Beck | Proposed Standard | February 2008 |
| 5084 | Using AES-CCM and AES-GCM Authenticated Encryption in the Cryptographic Message Syntax (CMS)R. Housley | Proposed Standard | November 2007 |
| 5083 | Cryptographic Message Syntax (CMS) Authenticated-Enveloped-Data Content TypeR. Housley | Proposed Standard | November 2007 |
| 5081 | Using OpenPGP Keys for Transport Layer Security (TLS) AuthenticationN. Mavrogiannopoulos · obsoleted by RFC 6091 | Experimental | November 2007 |
| 5080 | Common Remote Authentication Dial In User Service (RADIUS) Implementation Issues and Suggested FixesD. Nelson, A. DeKok | Proposed Standard | December 2007 |
| 5070 | The Incident Object Description Exchange FormatR. Danyliw, J. Meijer, Y. Demchenko · obsoleted by RFC 7970 | Proposed Standard | December 2007 |
| 5055 | Server-Based Certificate Validation Protocol (SCVP)T. Freeman, R. Housley, A. Malpani, D. Cooper, W. Polk | Proposed Standard | December 2007 |
| 5054 | Using the Secure Remote Password (SRP) Protocol for TLS AuthenticationD. Taylor, T. Wu, N. Mavrogiannopoulos, T. Perrin | Informational | November 2007 |
| 5035 | Enhanced Security Services (ESS) Update: Adding CertID Algorithm AgilityJ. Schaad | Proposed Standard | August 2007 |
| 5021 | Extended Kerberos Version 5 Key Distribution Center (KDC) Exchanges over TCPS. Josefsson | Proposed Standard | August 2007 |
| 5019 | The Lightweight Online Certificate Status Protocol (OCSP) Profile for High-Volume EnvironmentsA. Deacon, R. Hurst · obsoleted by RFC 9919 | Proposed Standard | September 2007 |
| 4985 | Internet X.509 Public Key Infrastructure Subject Alternative Name for Expression of Service NameS. Santesson | Proposed Standard | August 2007 |
| 4945 | The Internet IP Security PKI Profile of IKEv1/ISAKMP, IKEv2, and PKIXB. Korver | Proposed Standard | August 2007 |
| 4880 | OpenPGP Message FormatJ. Callas, L. Donnerhacke, H. Finney, D. Shaw, R. Thayer · obsoleted by RFC 9580 | Proposed Standard | November 2007 |
| 4853 | Cryptographic Message Syntax (CMS) Multiple Signer ClarificationR. Housley | Proposed Standard | April 2007 |
| 4849 | RADIUS Filter Rule AttributeP. Congdon, M. Sanchez, B. Aboba | Proposed Standard | April 2007 |
| 4819 | Secure Shell Public Key SubsystemJ. Galbraith, J. Van Dyke, J. Bright | Proposed Standard | March 2007 |
| 4818 | RADIUS Delegated-IPv6-Prefix AttributeJ. Salowey, R. Droms | Proposed Standard | April 2007 |
| 4809 | Requirements for an IPsec Certificate Management ProfileC. Bonatti, Ed., S. Turner, Ed., G. Lebovitz, Ed. | Informational | February 2007 |
| 4785 | Pre-Shared Key (PSK) Ciphersuites with NULL Encryption for Transport Layer Security (TLS)U. Blumenthal, P. Goel | Proposed Standard | January 2007 |
| 4768 | Desired Enhancements to Generic Security Services Application Program Interface (GSS-API) Version 3 NamingS. Hartman | Informational | December 2006 |
| 4767 | The Intrusion Detection Exchange Protocol (IDXP)B. Feinstein, G. Matthews | Experimental | March 2007 |
| 4766 | Intrusion Detection Message Exchange RequirementsM. Wood, M. Erlinger | Informational | March 2007 |
| 4765 | The Intrusion Detection Message Exchange Format (IDMEF)H. Debar, D. Curry, B. Feinstein | Experimental | March 2007 |
| 4752 | The Kerberos V5 ("GSSAPI") Simple Authentication and Security Layer (SASL) MechanismA. Melnikov, Ed. | Proposed Standard | November 2006 |
| 4738 | MIKEY-RSA-R: An Additional Mode of Key Distribution in Multimedia Internet KEYing (MIKEY)D. Ignjatic, L. Dondeti, F. Audet, P. Lin | Proposed Standard | November 2006 |
| 4716 | The Secure Shell (SSH) Public Key File FormatJ. Galbraith, R. Thayer | Informational | November 2006 |
| 4683 | Internet X.509 Public Key Infrastructure Subject Identification Method (SIM)J. Park, J. Lee, H. Lee, S. Park, T. Polk | Proposed Standard | October 2006 |
| 4675 | RADIUS Attributes for Virtual LAN and Priority SupportP. Congdon, M. Sanchez, B. Aboba | Proposed Standard | September 2006 |
| 4673 | RADIUS Dynamic Authorization Server MIBS. De Cnodder, N. Jonnala, M. Chiba | Informational | September 2006 |
| 4672 | RADIUS Dynamic Authorization Client MIBS. De Cnodder, N. Jonnala, M. Chiba | Informational | September 2006 |
| 4671 | RADIUS Accounting Server MIB for IPv6D. Nelson | Informational | August 2006 |
| 4670 | RADIUS Accounting Client MIB for IPv6D. Nelson | Informational | August 2006 |
| 4669 | RADIUS Authentication Server MIB for IPv6D. Nelson | Proposed Standard | August 2006 |
| 4668 | RADIUS Authentication Client MIB for IPv6D. Nelson | Proposed Standard | August 2006 |
| 4650 | HMAC-Authenticated Diffie-Hellman for Multimedia Internet KEYing (MIKEY)M. Euchner | Proposed Standard | September 2006 |
| 4630 | Update to DirectoryString Processing in the Internet X.509 Public Key Infrastructure Certificate and Certificate Revocation List (CRL) ProfileR. Housley, S. Santesson · obsoleted by RFC 5280 | Proposed Standard | August 2006 |
| 4621 | Design of the IKEv2 Mobility and Multihoming (MOBIKE) ProtocolT. Kivinen, H. Tschofenig | Informational | August 2006 |
| 4616 | The PLAIN Simple Authentication and Security Layer (SASL) MechanismK. Zeilenga, Ed. | Proposed Standard | August 2006 |
| 4590 | RADIUS Extension for Digest AuthenticationB. Sterman, D. Sadolevsky, D. Schwartz, D. Williams, W. Beck · obsoleted by RFC 5090 | Proposed Standard | July 2006 |
| 4563 | The Key ID Information Type for the General Extension Payload in Multimedia Internet KEYing (MIKEY)E. Carrara, V. Lehtovirta, K. Norrman | Proposed Standard | June 2006 |
| 4557 | Online Certificate Status Protocol (OCSP) Support for Public Key Cryptography for Initial Authentication in Kerberos (PKINIT)L. Zhu, K. Jaganathan, N. Williams | Proposed Standard | June 2006 |
| 4556 | Public Key Cryptography for Initial Authentication in Kerberos (PKINIT)L. Zhu, B. Tung | Proposed Standard | June 2006 |
| 4555 | IKEv2 Mobility and Multihoming Protocol (MOBIKE)P. Eronen | Proposed Standard | June 2006 |
| 4537 | Kerberos Cryptosystem Negotiation ExtensionL. Zhu, P. Leach, K. Jaganathan | Proposed Standard | June 2006 |
| 4535 | GSAKMP: Group Secure Association Key Management ProtocolH. Harney, U. Meth, A. Colegrove, G. Gross | Proposed Standard | June 2006 |
| 4534 | Group Security Policy Token v1A. Colegrove, H. Harney | Proposed Standard | June 2006 |
| 4505 | Anonymous Simple Authentication and Security Layer (SASL) MechanismK. Zeilenga | Proposed Standard | June 2006 |
| 4492 | Elliptic Curve Cryptography (ECC) Cipher Suites for Transport Layer Security (TLS)S. Blake-Wilson, N. Bolyard, V. Gupta, C. Hawk, B. Moeller · obsoleted by RFC 8422 | Informational | May 2006 |
| 4491 | Using the GOST R 34.10-94, GOST R 34.10-2001, and GOST R 34.11-94 Algorithms with the Internet X.509 Public Key Infrastructure Certificate and CRL ProfileS. Leontiev, Ed., D. Shefanovski, Ed. | Proposed Standard | May 2006 |
| 4490 | Using the GOST 28147-89, GOST R 34.11-94, GOST R 34.10-94, and GOST R 34.10-2001 Algorithms with Cryptographic Message Syntax (CMS)S. Leontiev, Ed., G. Chudov, Ed. | Proposed Standard | May 2006 |
| 4476 | Attribute Certificate (AC) Policies ExtensionC. Francis, D. Pinkas | Proposed Standard | May 2006 |
| 4462 | Generic Security Service Application Program Interface (GSS-API) Authentication and Key Exchange for the Secure Shell (SSH) ProtocolJ. Hutzelman, J. Salowey, J. Galbraith, V. Welch | Proposed Standard | May 2006 |
| 4442 | Bootstrapping Timed Efficient Stream Loss-Tolerant Authentication (TESLA)S. Fries, H. Tschofenig | Proposed Standard | March 2006 |
| 4430 | Kerberized Internet Negotiation of Keys (KINK)S. Sakane, K. Kamada, M. Thomas, J. Vilhuber | Proposed Standard | March 2006 |
| 4422 | Simple Authentication and Security Layer (SASL)A. Melnikov, Ed., K. Zeilenga, Ed. | Proposed Standard | June 2006 |
| 4419 | Diffie-Hellman Group Exchange for the Secure Shell (SSH) Transport Layer ProtocolM. Friedl, N. Provos, W. Simpson | Proposed Standard | March 2006 |
| 4402 | A Pseudo-Random Function (PRF) for the Kerberos V Generic Security Service Application Program Interface (GSS-API) MechanismN. Williams · obsoleted by RFC 7802 | Historic | February 2006 |
| 4401 | A Pseudo-Random Function (PRF) API Extension for the Generic Security Service Application Program Interface (GSS-API)N. Williams | Proposed Standard | February 2006 |
| 4387 | Internet X.509 Public Key Infrastructure Operational Protocols: Certificate Store Access via HTTPP. Gutmann, Ed. | Proposed Standard | February 2006 |
| 4386 | Internet X.509 Public Key Infrastructure Repository Locator ServiceS. Boeyen, P. Hallam-Baker | Experimental | February 2006 |
| 4383 | The Use of Timed Efficient Stream Loss-Tolerant Authentication (TESLA) in the Secure Real-time Transport Protocol (SRTP)M. Baugher, E. Carrara | Proposed Standard | February 2006 |
| 4372 | Chargeable User IdentityF. Adrangi, A. Lior, J. Korhonen, J. Loughney | Proposed Standard | January 2006 |
| 4366 | Transport Layer Security (TLS) ExtensionsS. Blake-Wilson, M. Nystrom, D. Hopwood, J. Mikkelsen, T. Wright · obsoleted by RFC 5246, RFC 6066 | Proposed Standard | April 2006 |
| 4359 | The Use of RSA/SHA-1 Signatures within Encapsulating Security Payload (ESP) and Authentication Header (AH)B. Weis | Proposed Standard | January 2006 |
| 4346 | The Transport Layer Security (TLS) Protocol Version 1.1T. Dierks, E. Rescorla · obsoleted by RFC 5246 | Historic | April 2006 |
| 4344 | The Secure Shell (SSH) Transport Layer Encryption ModesM. Bellare, T. Kohno, C. Namprempre | Proposed Standard | January 2006 |
| 4335 | The Secure Shell (SSH) Session Channel Break ExtensionJ. Galbraith, P. Remaker | Proposed Standard | January 2006 |
| 4334 | Certificate Extensions and Attributes Supporting Authentication in Point-to-Point Protocol (PPP) and Wireless Local Area Networks (WLAN)R. Housley, T. Moore | Proposed Standard | February 2006 |
| 4325 | Internet X.509 Public Key Infrastructure Authority Information Access Certificate Revocation List (CRL) ExtensionS. Santesson, R. Housley · obsoleted by RFC 5280 | Proposed Standard | December 2005 |
| 4309 | Using Advanced Encryption Standard (AES) CCM Mode with IPsec Encapsulating Security Payload (ESP)R. Housley | Proposed Standard | December 2005 |
| 4308 | Cryptographic Suites for IPsecP. Hoffman | Proposed Standard | December 2005 |
| 4307 | Cryptographic Algorithms for Use in the Internet Key Exchange Version 2 (IKEv2)J. Schiller · obsoleted by RFC 8247 | Proposed Standard | December 2005 |
| 4306 | Internet Key Exchange (IKEv2) ProtocolC. Kaufman, Ed. · obsoleted by RFC 5996 | Proposed Standard | December 2005 |
| 4305 | Cryptographic Algorithm Implementation Requirements for Encapsulating Security Payload (ESP) and Authentication Header (AH)D. Eastlake 3rd · obsoleted by RFC 4835 | Proposed Standard | December 2005 |
| 4304 | Extended Sequence Number (ESN) Addendum to IPsec Domain of Interpretation (DOI) for Internet Security Association and Key Management Protocol (ISAKMP)S. Kent | Proposed Standard | December 2005 |
| 4303 | IP Encapsulating Security Payload (ESP)S. Kent | Proposed Standard | December 2005 |
| 4302 | IP Authentication HeaderS. Kent | Proposed Standard | December 2005 |
| 4301 | Security Architecture for the Internet ProtocolS. Kent, K. Seo | Proposed Standard | December 2005 |
| 4282 | The Network Access IdentifierB. Aboba, M. Beadles, J. Arkko, P. Eronen · obsoleted by RFC 7542 | Proposed Standard | December 2005 |
| 4279 | Pre-Shared Key Ciphersuites for Transport Layer Security (TLS)P. Eronen, Ed., H. Tschofenig, Ed. | Proposed Standard | December 2005 |
| 4262 | X.509 Certificate Extension for Secure/Multipurpose Internet Mail Extensions (S/MIME) CapabilitiesS. Santesson | Proposed Standard | December 2005 |
| 4256 | Generic Message Exchange Authentication for the Secure Shell Protocol (SSH)F. Cusack, M. Forssen | Proposed Standard | January 2006 |
| 4255 | Using DNS to Securely Publish Secure Shell (SSH) Key FingerprintsJ. Schlyter, W. Griffin | Proposed Standard | January 2006 |
| 4254 | The Secure Shell (SSH) Connection ProtocolT. Ylonen, C. Lonvick, Ed. | Proposed Standard | January 2006 |
| 4253 | The Secure Shell (SSH) Transport Layer ProtocolT. Ylonen, C. Lonvick, Ed. | Proposed Standard | January 2006 |
| 4252 | The Secure Shell (SSH) Authentication ProtocolT. Ylonen, C. Lonvick, Ed. | Proposed Standard | January 2006 |
| 4251 | The Secure Shell (SSH) Protocol ArchitectureT. Ylonen, C. Lonvick, Ed. | Proposed Standard | January 2006 |
| 4250 | The Secure Shell (SSH) Protocol Assigned NumbersS. Lehtinen, C. Lonvick, Ed. | Proposed Standard | January 2006 |
| 4211 | Internet X.509 Public Key Infrastructure Certificate Request Message Format (CRMF)J. Schaad | Proposed Standard | September 2005 |
| 4210 | Internet X.509 Public Key Infrastructure Certificate Management Protocol (CMP)C. Adams, S. Farrell, T. Kause, T. Mononen · obsoleted by RFC 9810 | Proposed Standard | September 2005 |
| 4178 | The Simple and Protected Generic Security Service Application Program Interface (GSS-API) Negotiation MechanismL. Zhu, P. Leach, K. Jaganathan, W. Ingersoll | Proposed Standard | October 2005 |
| 4158 | Internet X.509 Public Key Infrastructure: Certification Path BuildingM. Cooper, Y. Dzambasow, P. Hesse, S. Joseph, R. Nicholas | Informational | September 2005 |
| 4134 | Examples of S/MIME MessagesP. Hoffman, Ed. | Informational | July 2005 |
| 4132 | Addition of Camellia Cipher Suites to Transport Layer Security (TLS)S. Moriai, A. Kato, M. Kanda · obsoleted by RFC 5932 | Proposed Standard | July 2005 |
| 4121 | The Kerberos Version 5 Generic Security Service Application Program Interface (GSS-API) Mechanism: Version 2L. Zhu, K. Jaganathan, S. Hartman | Proposed Standard | July 2005 |
| 4120 | The Kerberos Network Authentication Service (V5)C. Neuman, T. Yu, S. Hartman, K. Raeburn | Proposed Standard | July 2005 |
| 4106 | The Use of Galois/Counter Mode (GCM) in IPsec Encapsulating Security Payload (ESP)J. Viega, D. McGrew | Proposed Standard | June 2005 |
| 4082 | Timed Efficient Stream Loss-Tolerant Authentication (TESLA): Multicast Source Authentication Transform IntroductionA. Perrig, D. Song, R. Canetti, J. D. Tygar, B. Briscoe | Informational | June 2005 |
| 4059 | Internet X.509 Public Key Infrastructure Warranty Certificate ExtensionD. Linsenbardt, S. Pontius, A. Sturgeon | Informational | May 2005 |
| 4056 | Use of the RSASSA-PSS Signature Algorithm in Cryptographic Message Syntax (CMS)J. Schaad | Proposed Standard | June 2005 |
| 4055 | Additional Algorithms and Identifiers for RSA Cryptography for use in the Internet X.509 Public Key Infrastructure Certificate and Certificate Revocation List (CRL) ProfileJ. Schaad, B. Kaliski, R. Housley | Proposed Standard | June 2005 |
| 4046 | Multicast Security (MSEC) Group Key Management ArchitectureM. Baugher, R. Canetti, L. Dondeti, F. Lindholm | Informational | May 2005 |
| 4043 | Internet X.509 Public Key Infrastructure Permanent IdentifierD. Pinkas, T. Gindin | Proposed Standard | May 2005 |
| 4025 | A Method for Storing IPsec Keying Material in DNSM. Richardson | Proposed Standard | March 2005 |
| 4013 | SASLprep: Stringprep Profile for User Names and PasswordsK. Zeilenga · obsoleted by RFC 7613 | Proposed Standard | March 2005 |
| 4010 | Use of the SEED Encryption Algorithm in Cryptographic Message Syntax (CMS)J. Park, S. Lee, J. Kim, J. Lee | Proposed Standard | February 2005 |
| 3962 | Advanced Encryption Standard (AES) Encryption for Kerberos 5K. Raeburn | Proposed Standard | February 2005 |
| 3961 | Encryption and Checksum Specifications for Kerberos 5K. Raeburn | Proposed Standard | February 2005 |
| 3948 | UDP Encapsulation of IPsec ESP PacketsA. Huttunen, B. Swander, V. Volpe, L. DiBurro, M. Stenberg | Proposed Standard | January 2005 |
| 3947 | Negotiation of NAT-Traversal in the IKET. Kivinen, B. Swander, A. Huttunen, V. Volpe | Proposed Standard | January 2005 |
| 3874 | A 224-bit One-way Hash Function: SHA-224R. Housley | Informational | September 2004 |
| 3855 | Transporting Secure/Multipurpose Internet Mail Extensions (S/MIME) Objects in X.400P. Hoffman, C. Bonatti | Proposed Standard | July 2004 |
| 3854 | Securing X.400 Content with Secure/Multipurpose Internet Mail Extensions (S/MIME)P. Hoffman, C. Bonatti, A. Eggen | Proposed Standard | July 2004 |
| 3852 | Cryptographic Message Syntax (CMS)R. Housley · obsoleted by RFC 5652 | Proposed Standard | July 2004 |
| 3851 | Secure/Multipurpose Internet Mail Extensions (S/MIME) Version 3.1 Message SpecificationB. Ramsdell, Ed. · obsoleted by RFC 5751 | Proposed Standard | July 2004 |
| 3850 | Secure/Multipurpose Internet Mail Extensions (S/MIME) Version 3.1 Certificate HandlingB. Ramsdell, Ed. · obsoleted by RFC 5750 | Proposed Standard | July 2004 |
| 3830 | MIKEY: Multimedia Internet KEYingJ. Arkko, E. Carrara, F. Lindholm, M. Naslund, K. Norrman | Proposed Standard | August 2004 |
| 3820 | Internet X.509 Public Key Infrastructure (PKI) Proxy Certificate ProfileS. Tuecke, V. Welch, D. Engert, L. Pearlman, M. Thompson | Proposed Standard | June 2004 |
| 3779 | X.509 Extensions for IP Addresses and AS IdentifiersC. Lynn, S. Kent, K. Seo | Proposed Standard | June 2004 |
| 3770 | Certificate Extensions and Attributes Supporting Authentication in Point-to-Point Protocol (PPP) and Wireless Local Area Networks (WLAN)R. Housley, T. Moore · obsoleted by RFC 4334 | Proposed Standard | May 2004 |
| 3767 | Securely Available Credentials ProtocolS. Farrell, Ed. | Proposed Standard | June 2004 |
| 3760 | Securely Available Credentials (SACRED) - Credential Server FrameworkD. Gustafson, M. Just, M. Nystrom | Informational | April 2004 |
| 3749 | Transport Layer Security Protocol Compression MethodsS. Hollenbeck | Proposed Standard | May 2004 |
| 3741 | Exclusive XML Canonicalization, Version 1.0J. Boyer, D. Eastlake 3rd, J. Reagle | Informational | March 2004 |
| 3740 | The Multicast Group Security ArchitectureT. Hardjono, B. Weis | Informational | March 2004 |
| 3739 | Internet X.509 Public Key Infrastructure: Qualified Certificates ProfileS. Santesson, M. Nystrom, T. Polk | Proposed Standard | March 2004 |
| 3715 | IPsec-Network Address Translation (NAT) Compatibility RequirementsB. Aboba, W. Dixon | Informational | March 2004 |
| 3709 | Internet X.509 Public Key Infrastructure: Logotypes in X.509 CertificatesS. Santesson, R. Housley, T. Freeman · obsoleted by RFC 9399 | Proposed Standard | February 2004 |
| 3706 | A Traffic-Based Method of Detecting Dead Internet Key Exchange (IKE) PeersG. Huang, S. Beaulieu, D. Rochefort | Informational | February 2004 |
| 3686 | Using Advanced Encryption Standard (AES) Counter Mode With IPsec Encapsulating Security Payload (ESP)R. Housley | Proposed Standard | January 2004 |
| 3664 | The AES-XCBC-PRF-128 Algorithm for the Internet Key Exchange Protocol (IKE)P. Hoffman · obsoleted by RFC 4434 | Proposed Standard | January 2004 |
| 3657 | Use of the Camellia Encryption Algorithm in Cryptographic Message Syntax (CMS)S. Moriai, A. Kato | Proposed Standard | January 2004 |
| 3653 | XML-Signature XPath Filter 2.0J. Boyer, M. Hughes, J. Reagle | Informational | December 2003 |
| 3647 | Internet X.509 Public Key Infrastructure Certificate Policy and Certification Practices FrameworkS. Chokhani, W. Ford, R. Sabett, C. Merrill, S. Wu | Informational | November 2003 |
| 3628 | Policy Requirements for Time-Stamping Authorities (TSAs)D. Pinkas, N. Pope, J. Ross | Informational | November 2003 |
| 3620 | The TUNNEL ProfileD. New | Proposed Standard | October 2003 |
| 3602 | The AES-CBC Cipher Algorithm and Its Use with IPsecS. Frankel, R. Glenn, S. Kelly | Proposed Standard | September 2003 |
| 3586 | IP Security Policy (IPSP) RequirementsM. Blaze, A. Keromytis, M. Richardson, L. Sanchez | Proposed Standard | August 2003 |
| 3585 | IPsec Configuration Policy Information ModelJ. Jason, L. Rafalow, E. Vyncke | Proposed Standard | August 2003 |
| 3566 | The AES-XCBC-MAC-96 Algorithm and Its Use With IPsecS. Frankel, H. Herbert | Proposed Standard | September 2003 |
| 3565 | Use of the Advanced Encryption Standard (AES) Encryption Algorithm in Cryptographic Message Syntax (CMS)J. Schaad | Proposed Standard | July 2003 |
| 3560 | Use of the RSAES-OAEP Key Transport Algorithm in Cryptographic Message Syntax (CMS)R. Housley | Proposed Standard | July 2003 |
| 3554 | On the Use of Stream Control Transmission Protocol (SCTP) with IPsecS. Bellovin, J. Ioannidis, A. Keromytis, R. Stewart | Proposed Standard | July 2003 |
| 3547 | The Group Domain of InterpretationM. Baugher, B. Weis, T. Hardjono, H. Harney · obsoleted by RFC 6407 | Proposed Standard | July 2003 |
| 3546 | Transport Layer Security (TLS) ExtensionsS. Blake-Wilson, M. Nystrom, D. Hopwood, J. Mikkelsen, T. Wright · obsoleted by RFC 4366 | Proposed Standard | June 2003 |
| 3537 | Wrapping a Hashed Message Authentication Code (HMAC) key with a Triple-Data Encryption Standard (DES) Key or an Advanced Encryption Standard (AES) KeyJ. Schaad, R. Housley | Proposed Standard | May 2003 |
| 3526 | More Modular Exponential (MODP) Diffie-Hellman groups for Internet Key Exchange (IKE)T. Kivinen, M. Kojo | Proposed Standard | May 2003 |
| 3457 | Requirements for IPsec Remote Access ScenariosS. Kelly, S. Ramamoorthi | Informational | January 2003 |
| 3456 | Dynamic Host Configuration Protocol (DHCPv4) Configuration of IPsec Tunnel ModeB. Patel, B. Aboba, S. Kelly, V. Gupta | Proposed Standard | January 2003 |
| 3394 | Advanced Encryption Standard (AES) Key Wrap AlgorithmJ. Schaad, R. Housley | Informational | October 2002 |
| 3379 | Delegated Path Validation and Delegated Path Discovery Protocol RequirementsD. Pinkas, R. Housley | Informational | September 2002 |
| 3370 | Cryptographic Message Syntax (CMS) AlgorithmsR. Housley | Proposed Standard | September 2002 |
| 3369 | Cryptographic Message Syntax (CMS)R. Housley · obsoleted by RFC 3852 | Proposed Standard | September 2002 |
| 3281 | An Internet Attribute Certificate Profile for AuthorizationS. Farrell, R. Housley · obsoleted by RFC 5755 | Proposed Standard | May 2002 |
| 3280 | Internet X.509 Public Key Infrastructure Certificate and Certificate Revocation List (CRL) ProfileR. Housley, W. Polk, W. Ford, D. Solo · obsoleted by RFC 5280 | Proposed Standard | May 2002 |
| 3279 | Algorithms and Identifiers for the Internet X.509 Public Key Infrastructure Certificate and Certificate Revocation List (CRL) ProfileL. Bassham, W. Polk, R. Housley | Proposed Standard | May 2002 |
| 3278 | Use of Elliptic Curve Cryptography (ECC) Algorithms in Cryptographic Message Syntax (CMS)S. Blake-Wilson, D. Brown, P. Lambert · obsoleted by RFC 5753 | Informational | May 2002 |
| 3275 | (Extensible Markup Language) XML-Signature Syntax and ProcessingD. Eastlake 3rd, J. Reagle, D. Solo | Draft Standard | March 2002 |
| 3274 | Compressed Data Content Type for Cryptographic Message Syntax (CMS)P. Gutmann | Proposed Standard | June 2002 |
| 3268 | Advanced Encryption Standard (AES) Ciphersuites for Transport Layer Security (TLS)P. Chown · obsoleted by RFC 5246 | Proposed Standard | July 2002 |
| 3218 | Preventing the Million Message Attack on Cryptographic Message SyntaxE. Rescorla | Informational | January 2002 |
| 3217 | Triple-DES and RC2 Key WrappingR. Housley | Informational | December 2001 |
| 3211 | Password-based Encryption for CMSP. Gutmann · obsoleted by RFC 3369, RFC 3370 | Proposed Standard | December 2001 |
| 3195 | Reliable Delivery for syslogD. New, M. Rose | Proposed Standard | November 2001 |
| 3185 | Reuse of CMS Content Encryption KeysS. Farrell, S. Turner | Proposed Standard | October 2001 |
| 3183 | Domain Security Services using S/MIMET. Dean, W. Ottaway | Experimental | October 2001 |
| 3164 | The BSD Syslog ProtocolC. Lonvick · obsoleted by RFC 5424 | Informational | August 2001 |
| 3161 | Internet X.509 Public Key Infrastructure Time-Stamp Protocol (TSP)C. Adams, P. Cain, D. Pinkas, R. Zuccherato | Proposed Standard | August 2001 |
| 3157 | Securely Available Credentials - RequirementsA. Arsenault, S. Farrell | Informational | August 2001 |
| 3156 | MIME Security with OpenPGPM. Elkins, D. Del Torto, R. Levien, T. Roessler | Proposed Standard | August 2001 |
| 3129 | Requirements for Kerberized Internet Negotiation of KeysM. Thomas | Informational | June 2001 |
| 3126 | Electronic Signature Formats for long term electronic signaturesD. Pinkas, J. Ross, N. Pope · obsoleted by RFC 5126 | Informational | September 2001 |
| 3125 | Electronic Signature PoliciesJ. Ross, D. Pinkas, N. Pope | Experimental | September 2001 |
| 3114 | Implementing Company Classification Policy with the S/MIME Security LabelW. Nicolls | Informational | May 2002 |
| 3076 | Canonical XML Version 1.0J. Boyer | Informational | March 2001 |
| 3075 | XML-Signature Syntax and ProcessingD. Eastlake 3rd, J. Reagle, D. Solo · obsoleted by RFC 3275 | Proposed Standard | March 2001 |
| 3058 | Use of the IDEA Encryption Algorithm in CMSS. Teiwes, P. Hartmann, D. Kuenzi | Informational | February 2001 |
| 3039 | Internet X.509 Public Key Infrastructure Qualified Certificates ProfileS. Santesson, W. Polk, P. Barzin, M. Nystrom · obsoleted by RFC 3739 | Proposed Standard | January 2001 |
| 3029 | Internet X.509 Public Key Infrastructure Data Validation and Certification Server ProtocolsC. Adams, P. Sylvester, M. Zolotarev, R. Zuccherato | Experimental | February 2001 |
| 2984 | Use of the CAST-128 Encryption Algorithm in CMSC. Adams | Proposed Standard | October 2000 |
| 2876 | Use of the KEA and SKIPJACK Algorithms in CMSJ. Pawling | Informational | July 2000 |
| 2875 | Diffie-Hellman Proof-of-Possession AlgorithmsH. Prafullchandra, J. Schaad · obsoleted by RFC 6955 | Proposed Standard | July 2000 |
| 2857 | The Use of HMAC-RIPEMD-160-96 within ESP and AHA. Keromytis, N. Provos | Proposed Standard | June 2000 |
| 2853 | Generic Security Service API Version 2 : Java BindingsJ. Kabat, M. Upadhyay · obsoleted by RFC 5653 | Proposed Standard | June 2000 |
| 2847 | LIPKEY - A Low Infrastructure Public Key Mechanism Using SPKMM. Eisler | Proposed Standard | June 2000 |
| 2818 | HTTP Over TLSE. Rescorla · obsoleted by RFC 9110 | Informational | May 2000 |
| 2817 | Upgrading to TLS Within HTTP/1.1R. Khare, S. Lawrence | Proposed Standard | May 2000 |
| 2807 | XML Signature RequirementsJ. Reagle | Informational | July 2000 |
| 2797 | Certificate Management Messages over CMSM. Myers, X. Liu, J. Schaad, J. Weinstein · obsoleted by RFC 5272 | Proposed Standard | April 2000 |
| 2785 | Methods for Avoiding the "Small-Subgroup" Attacks on the Diffie-Hellman Key Agreement Method for S/MIMER. Zuccherato | Informational | March 2000 |
| 2773 | Encryption using KEA and SKIPJACKR. Housley, P. Yee, W. Nace | Experimental | February 2000 |
| 2744 | Generic Security Service API Version 2 : C-bindingsJ. Wray | Proposed Standard | January 2000 |
| 2743 | Generic Security Service Application Program Interface Version 2, Update 1J. Linn | Proposed Standard | January 2000 |
| 2712 | Addition of Kerberos Cipher Suites to Transport Layer Security (TLS)A. Medvinsky, M. Hur | Proposed Standard | October 1999 |
| 2693 | SPKI Certificate TheoryC. Ellison, B. Frantz, B. Lampson, R. Rivest, B. Thomas, T. Ylonen | Experimental | September 1999 |
| 2692 | SPKI RequirementsC. Ellison | Experimental | September 1999 |
| 2660 | The Secure HyperText Transfer ProtocolE. Rescorla, A. Schiffman | Historic | August 1999 |
| 2659 | Security Extensions For HTMLE. Rescorla, A. Schiffman | Experimental | August 1999 |
| 2634 | Enhanced Security Services for S/MIMEP. Hoffman, Ed. | Proposed Standard | June 1999 |
| 2633 | S/MIME Version 3 Message SpecificationB. Ramsdell, Ed. · obsoleted by RFC 3851 | Proposed Standard | June 1999 |
| 2632 | S/MIME Version 3 Certificate HandlingB. Ramsdell, Ed. · obsoleted by RFC 3850 | Proposed Standard | June 1999 |
| 2631 | Diffie-Hellman Key Agreement MethodE. Rescorla | Proposed Standard | June 1999 |
| 2630 | Cryptographic Message SyntaxR. Housley · obsoleted by RFC 3369, RFC 3370 | Proposed Standard | June 1999 |
| 2587 | Internet X.509 Public Key Infrastructure LDAPv2 SchemaS. Boeyen, T. Howes, P. Richard · obsoleted by RFC 4523 | Proposed Standard | June 1999 |
| 2585 | Internet X.509 Public Key Infrastructure Operational Protocols: FTP and HTTPR. Housley, P. Hoffman | Proposed Standard | May 1999 |
| 2560 | X.509 Internet Public Key Infrastructure Online Certificate Status Protocol - OCSPM. Myers, R. Ankney, A. Malpani, S. Galperin, C. Adams · obsoleted by RFC 6960 | Proposed Standard | June 1999 |
| 2559 | Internet X.509 Public Key Infrastructure Operational Protocols - LDAPv2S. Boeyen, T. Howes, P. Richard · obsoleted by RFC 3494 | Historic | April 1999 |
| 2541 | DNS Security Operational ConsiderationsD. Eastlake 3rd · obsoleted by RFC 4641 | Informational | March 1999 |
| 2540 | Detached Domain Name System (DNS) InformationD. Eastlake 3rd | Experimental | March 1999 |
| 2539 | Storage of Diffie-Hellman Keys in the Domain Name System (DNS)D. Eastlake 3rd | Proposed Standard | March 1999 |
| 2538 | Storing Certificates in the Domain Name System (DNS)D. Eastlake 3rd, O. Gudmundsson · obsoleted by RFC 4398 | Proposed Standard | March 1999 |
| 2537 | RSA/MD5 KEYs and SIGs in the Domain Name System (DNS)D. Eastlake 3rd · obsoleted by RFC 3110 | Proposed Standard | March 1999 |
| 2536 | DSA KEYs and SIGs in the Domain Name System (DNS)D. Eastlake 3rd | Proposed Standard | March 1999 |
| 2535 | Domain Name System Security ExtensionsD. Eastlake 3rd · obsoleted by RFC 4033, RFC 4034, RFC 4035 | Proposed Standard | March 1999 |
| 2528 | Internet X.509 Public Key Infrastructure Representation of Key Exchange Algorithm (KEA) Keys in Internet X.509 Public Key Infrastructure CertificatesR. Housley, W. Polk | Informational | March 1999 |
| 2527 | Internet X.509 Public Key Infrastructure Certificate Policy and Certification Practices FrameworkS. Chokhani, W. Ford · obsoleted by RFC 3647 | Informational | March 1999 |
| 2511 | Internet X.509 Certificate Request Message FormatM. Myers, C. Adams, D. Solo, D. Kemp · obsoleted by RFC 4211 | Proposed Standard | March 1999 |
| 2510 | Internet X.509 Public Key Infrastructure Certificate Management ProtocolsC. Adams, S. Farrell · obsoleted by RFC 4210 | Proposed Standard | March 1999 |
| 2479 | Independent Data Unit Protection Generic Security Service Application Program Interface (IDUP-GSS-API)C. Adams | Informational | December 1998 |
| 2478 | The Simple and Protected GSS-API Negotiation MechanismE. Baize, D. Pinkas · obsoleted by RFC 4178 | Proposed Standard | December 1998 |
| 2459 | Internet X.509 Public Key Infrastructure Certificate and CRL ProfileR. Housley, W. Ford, W. Polk, D. Solo · obsoleted by RFC 3280 | Proposed Standard | January 1999 |
| 2451 | The ESP CBC-Mode Cipher AlgorithmsR. Pereira, R. Adams | Proposed Standard | November 1998 |
| 2444 | The One-Time-Password SASL MechanismC. Newman | Proposed Standard | October 1998 |
| 2440 | OpenPGP Message FormatJ. Callas, L. Donnerhacke, H. Finney, R. Thayer · obsoleted by RFC 4880 | Proposed Standard | November 1998 |
| 2412 | The OAKLEY Key Determination ProtocolH. Orman | Informational | November 1998 |
| 2411 | IP Security Document RoadmapR. Thayer, N. Doraswamy, R. Glenn · obsoleted by RFC 6071 | Informational | November 1998 |
| 2410 | The NULL Encryption Algorithm and Its Use With IPsecR. Glenn, S. Kent | Proposed Standard | November 1998 |
| 2409 | The Internet Key Exchange (IKE)D. Harkins, D. Carrel · obsoleted by RFC 4306 | Historic | November 1998 |
| 2408 | Internet Security Association and Key Management Protocol (ISAKMP)D. Maughan, M. Schertler, M. Schneider, J. Turner · obsoleted by RFC 4306 | Historic | November 1998 |
| 2407 | The Internet IP Security Domain of Interpretation for ISAKMPD. Piper · obsoleted by RFC 4306 | Historic | November 1998 |
| 2406 | IP Encapsulating Security Payload (ESP)S. Kent, R. Atkinson · obsoleted by RFC 4303, RFC 4305 | Proposed Standard | November 1998 |
| 2405 | The ESP DES-CBC Cipher Algorithm With Explicit IVC. Madson, N. Doraswamy | Proposed Standard | November 1998 |
| 2404 | The Use of HMAC-SHA-1-96 within ESP and AHC. Madson, R. Glenn | Proposed Standard | November 1998 |
| 2403 | The Use of HMAC-MD5-96 within ESP and AHC. Madson, R. Glenn | Proposed Standard | November 1998 |
| 2402 | IP Authentication HeaderS. Kent, R. Atkinson · obsoleted by RFC 4302, RFC 4305 | Proposed Standard | November 1998 |
| 2401 | Security Architecture for the Internet ProtocolS. Kent, R. Atkinson · obsoleted by RFC 4301 | Proposed Standard | November 1998 |
| 2289 | A One-Time Password SystemN. Haller, C. Metz, P. Nesser, M. Straw | Internet Standard | February 1998 |
| 2246 | The TLS Protocol Version 1.0T. Dierks, C. Allen · obsoleted by RFC 4346 | Historic | January 1999 |
| 2243 | OTP Extended ResponsesC. Metz | Proposed Standard | November 1997 |
| 2228 | FTP Security ExtensionsM. Horowitz, S. Lunt | Proposed Standard | October 1997 |
| 2137 | Secure Domain Name System Dynamic UpdateD. Eastlake 3rd · obsoleted by RFC 3007 | Proposed Standard | April 1997 |
| 2104 | HMAC: Keyed-Hashing for Message AuthenticationH. Krawczyk, M. Bellare, R. Canetti | Informational | February 1997 |
| 2085 | HMAC-MD5 IP Authentication with Replay PreventionM. Oehler, R. Glenn | Proposed Standard | February 1997 |
| 2084 | Considerations for Web Transaction SecurityG. Bossert, S. Cooper, W. Drummond | Informational | January 1997 |
| 2078 | Generic Security Service Application Program Interface, Version 2J. Linn · obsoleted by RFC 2743 | Proposed Standard | January 1997 |
| 2065 | Domain Name System Security ExtensionsD. Eastlake 3rd, C. Kaufman · obsoleted by RFC 2535 | Proposed Standard | January 1997 |
| 2025 | The Simple Public-Key GSS-API Mechanism (SPKM)C. Adams | Proposed Standard | October 1996 |
| 1964 | The Kerberos Version 5 GSS-API MechanismJ. Linn | Proposed Standard | June 1996 |
| 1961 | GSS-API Authentication Method for SOCKS Version 5P. McMahon | Proposed Standard | June 1996 |
| 1938 | A One-Time Password SystemN. Haller, C. Metz · obsoleted by RFC 2289 | Proposed Standard | May 1996 |
| 1929 | Username/Password Authentication for SOCKS V5M. Leech | Proposed Standard | March 1996 |
| 1928 | SOCKS Protocol Version 5M. Leech, M. Ganis, Y. Lee, R. Kuris, D. Koblas, L. Jones | Proposed Standard | March 1996 |
| 1848 | MIME Object Security ServicesS. Crocker, N. Freed, J. Galvin, S. Murphy | Historic | October 1995 |
| 1847 | Security Multiparts for MIME: Multipart/Signed and Multipart/EncryptedJ. Galvin, S. Murphy, S. Crocker, N. Freed | Proposed Standard | October 1995 |
| 1829 | The ESP DES-CBC TransformP. Karn, P. Metzger, W. Simpson | Proposed Standard | August 1995 |
| 1828 | IP Authentication using Keyed MD5P. Metzger, W. Simpson | Historic | August 1995 |
| 1827 | IP Encapsulating Security Payload (ESP)R. Atkinson · obsoleted by RFC 2406 | Proposed Standard | August 1995 |
| 1826 | IP Authentication HeaderR. Atkinson · obsoleted by RFC 2402 | Proposed Standard | August 1995 |
| 1825 | Security Architecture for the Internet ProtocolR. Atkinson · obsoleted by RFC 2401 | Proposed Standard | August 1995 |
| 1510 | The Kerberos Network Authentication Service (V5)J. Kohl, C. Neuman · obsoleted by RFC 4120, RFC 6649 | Historic | September 1993 |
| 1509 | Generic Security Service API : C-bindingsJ. Wray · obsoleted by RFC 2744 | Proposed Standard | September 1993 |
| 1508 | Generic Security Service Application Program InterfaceJ. Linn · obsoleted by RFC 2078 | Proposed Standard | September 1993 |
| 1507 | DASS - Distributed Authentication Security ServiceC. Kaufman | Experimental | September 1993 |
| 1447 | Party MIB for version 2 of the Simple Network Management Protocol (SNMPv2)K. McCloghrie, J. Galvin | Historic | April 1993 |
| 1446 | Security Protocols for version 2 of the Simple Network Management Protocol (SNMPv2)J. Galvin, K. McCloghrie | Historic | April 1993 |
| 1445 | Administrative Model for version 2 of the Simple Network Management Protocol (SNMPv2)J. Galvin, K. McCloghrie | Historic | April 1993 |
| 1424 | Privacy Enhancement for Internet Electronic Mail: Part IV: Key Certification and Related ServicesB. Kaliski | Historic | February 1993 |
| 1423 | Privacy Enhancement for Internet Electronic Mail: Part III: Algorithms, Modes, and IdentifiersD. Balenson | Historic | February 1993 |
| 1422 | Privacy Enhancement for Internet Electronic Mail: Part II: Certificate-Based Key ManagementS. Kent | Historic | February 1993 |
| 1421 | Privacy Enhancement for Internet Electronic Mail: Part I: Message Encryption and Authentication ProceduresJ. Linn | Historic | February 1993 |
| 1414 | Identification MIBM. St. Johns, M. Rose | Historic | February 1993 |
| 1413 | Identification ProtocolM. St. Johns | Proposed Standard | February 1993 |
| 1353 | Definitions of Managed Objects for Administration of SNMP PartiesK. McCloghrie, J. Davin, J. Galvin | Historic | July 1992 |
| 1352 | SNMP Security ProtocolsJ. Galvin, K. McCloghrie, J. Davin | Historic | July 1992 |
| 1351 | SNMP Administrative ModelJ. Davin, J. Galvin, K. McCloghrie | Historic | July 1992 |
| 1321 | The MD5 Message-Digest AlgorithmR. Rivest | Informational | April 1992 |
| 1320 | The MD4 Message-Digest AlgorithmR. Rivest · obsoleted by RFC 6150 | Historic | April 1992 |
| 1319 | The MD2 Message-Digest AlgorithmB. Kaliski · obsoleted by RFC 6149 | Historic | April 1992 |
| 1281 | Guidelines for the Secure Operation of the InternetR. Pethia, S. Crocker, B. Fraser | Informational | November 1991 |