Hi all,

We have just submitted an updated version of draft-tiloca-tls-dos-handshake
This revised version especially considers the comments from Eric
Rescorla and following discussion [1]. Thanks again, Eric!

Comments are very welcome.

Best,
/Marco

[1] https://www.ietf.org/mail-archive/web/tls/current/msg23824.html


-------- Forwarded Message --------
Subject:        New Version Notification for
draft-tiloca-tls-dos-handshake-01.txt
Date:   Sat, 28 Oct 2017 04:54:51 -0700
From:   internet-dra...@ietf.org
To:     Maarten Hoeve <maarten.ho...@encs.eu>, Ludwig Seitz
<ludwig.se...@ri.se>, Olaf Bergmann <bergm...@tzi.org>, Marco Tiloca
<marco.til...@ri.se>



A new version of I-D, draft-tiloca-tls-dos-handshake-01.txt
has been successfully submitted by Marco Tiloca and posted to the
IETF repository.

Name:           draft-tiloca-tls-dos-handshake
Revision:       01
Title:          Extension for protecting (D)TLS handshakes against Denial of 
Service
Document date:  2017-10-28
Group:          Individual Submission
Pages:          14
URL:            
https://www.ietf.org/internet-drafts/draft-tiloca-tls-dos-handshake-01.txt
Status:         https://datatracker.ietf.org/doc/draft-tiloca-tls-dos-handshake/
Htmlized:       https://tools.ietf.org/html/draft-tiloca-tls-dos-handshake-01
Htmlized:       
https://datatracker.ietf.org/doc/html/draft-tiloca-tls-dos-handshake-01
Diff:           
https://www.ietf.org/rfcdiff?url2=draft-tiloca-tls-dos-handshake-01

Abstract:
   This document describes an extension for TLS and DTLS to protect the
   server from Denial of Service attacks against the handshake protocol,
   carried out by an on-path adversary.  The extension includes a nonce
   and a Message Authentication Code (MAC) over that nonce, encoded as a
   Handshake Token that a Trust Anchor entity computes and provides to
   the client.  The server registered at the Trust Anchor verifies the
   MAC to determine whether continuing or aborting the handshake.

                                                                                
  


Please note that it may take a couple of minutes from the time of submission
until the htmlized version and diff are available at tools.ietf.org.

The IETF Secretariat

Attachment: signature.asc
Description: OpenPGP digital signature

_______________________________________________
TLS mailing list
TLS@ietf.org
https://www.ietf.org/mailman/listinfo/tls

Reply via email to