Cite this RFC:TXT | XML | BibTeX
DOI: https://doi.org/10.17487/RFC7633
Discuss this RFC: Send questions or comments to the mailing listiesg@ietf.org
Other actions:View Errata | Submit Errata | Find IPR Disclosures from the IETF | View History of RFC 7633
The purpose of the TLS feature extension is to prevent downgradeattacks that are not otherwise prevented by the TLS protocol. Inparticular, the TLS feature extension may be used to mandate supportfor revocation checking features in the TLS protocol such as OnlineCertificate Status Protocol (OCSP) stapling. Informing clients thatan OCSP status response will always be stapled permits an immediatefailure in the case that the response is not stapled. This in turnprevents a denial-of-service attack that might otherwise be possible.
For the definition ofStatus,seeRFC 2026.
For the definition ofStream, seeRFC 8729.