Movatterモバイル変換


[0]ホーム

URL:


Search RFCs

Advanced Search

RFC Editor

RFC 7633

X.509v3 Transport Layer Security (TLS) Feature Extension,October 2015

File formats:
icon for text fileicon for PDFicon for HTML
Status:
PROPOSED STANDARD
Author:
P. Hallam-Baker
Stream:
IETF
Source:
NON WORKING GROUP

Cite this RFC:TXT  | XML  |  BibTeX

DOI:  https://doi.org/10.17487/RFC7633

Discuss this RFC: Send questions or comments to the mailing listiesg@ietf.org

Other actions:View Errata  | Submit Errata  | Find IPR Disclosures from the IETF  | View History of RFC 7633


Abstract

The purpose of the TLS feature extension is to prevent downgradeattacks that are not otherwise prevented by the TLS protocol. Inparticular, the TLS feature extension may be used to mandate supportfor revocation checking features in the TLS protocol such as OnlineCertificate Status Protocol (OCSP) stapling. Informing clients thatan OCSP status response will always be stapled permits an immediatefailure in the case that the response is not stapled. This in turnprevents a denial-of-service attack that might otherwise be possible.


For the definition ofStatus,seeRFC 2026.

For the definition ofStream, seeRFC 8729.




IABIANAIETFIRTFISEISOCIETF Trust
ReportsPrivacy StatementSite MapContact Us

Advanced Search

[8]ページ先頭

©2009-2026 Movatter.jp