Hi all, We have just submitted an updated version of draft-tiloca-tls-dos-handshake
This revised version especially considers the comments from Eric Rescorla and following discussion [1]. Thanks again, Eric! Comments are very welcome. Best, /Marco [1] https://www.ietf.org/mail-archive/web/tls/current/msg23824.html -------- Forwarded Message -------- Subject: New Version Notification for draft-tiloca-tls-dos-handshake-01.txt Date: Sat, 28 Oct 2017 04:54:51 -0700 From: internet-dra...@ietf.org To: Maarten Hoeve <maarten.ho...@encs.eu>, Ludwig Seitz <ludwig.se...@ri.se>, Olaf Bergmann <bergm...@tzi.org>, Marco Tiloca <marco.til...@ri.se> A new version of I-D, draft-tiloca-tls-dos-handshake-01.txt has been successfully submitted by Marco Tiloca and posted to the IETF repository. Name: draft-tiloca-tls-dos-handshake Revision: 01 Title: Extension for protecting (D)TLS handshakes against Denial of Service Document date: 2017-10-28 Group: Individual Submission Pages: 14 URL: https://www.ietf.org/internet-drafts/draft-tiloca-tls-dos-handshake-01.txt Status: https://datatracker.ietf.org/doc/draft-tiloca-tls-dos-handshake/ Htmlized: https://tools.ietf.org/html/draft-tiloca-tls-dos-handshake-01 Htmlized: https://datatracker.ietf.org/doc/html/draft-tiloca-tls-dos-handshake-01 Diff: https://www.ietf.org/rfcdiff?url2=draft-tiloca-tls-dos-handshake-01 Abstract: This document describes an extension for TLS and DTLS to protect the server from Denial of Service attacks against the handshake protocol, carried out by an on-path adversary. The extension includes a nonce and a Message Authentication Code (MAC) over that nonce, encoded as a Handshake Token that a Trust Anchor entity computes and provides to the client. The server registered at the Trust Anchor verifies the MAC to determine whether continuing or aborting the handshake. Please note that it may take a couple of minutes from the time of submission until the htmlized version and diff are available at tools.ietf.org. The IETF Secretariat
signature.asc
Description: OpenPGP digital signature
_______________________________________________ TLS mailing list TLS@ietf.org https://www.ietf.org/mailman/listinfo/tls