Quantcast
Browsing all 72 articles
Browse latest View live

"Using Secure DNS to Associate Certificates with Domain Names For S/MIME" -...

2014-02-14, rev -06: This document describes how to use secure DNS to associate an S/MIME user's certificate with the intended domain name, similar to the way that DANE (RFC 6698) does for TLS.

View Article


"SMTP security via opportunistic DANE TLS" - Viktor Dukhovni, Wesley Hardaker

2014-02-14, rev -07: This memo describes a downgrade-resistant protocol for SMTP transport security between Mail Transfer Agents (MTAs) based on the DNS-Based Authentication of Named Entities (DANE)...

View Article


"DANE TLSA implementation and operational guidance" - Viktor Dukhovni, Wesley...

2014-02-14, rev -03: This memo provides guidance to server operators to help ensure that clients will be able to authenticate a server's certificate chain via published TLSA records. Guidance is also...

View Article

"Adding acronyms to simplify DANE conversations" - Olafur Gudmundsson

2014-02-14, rev -04: Experience has shown that people get confused using the three numeric fields the TLSA record. This document specifies descriptive acronyms for the three numeric fields in the TLSA...

View Article

"Using DANE to Associate OpenPGP public keys with email addresses" - Paul...

2014-04-10, rev -00: OpenPGP is a message format for email (and file) encryption, that lacks a standarized lookup mechanism to obtain OpenPGP public keys. This document specifies a standarized method...

View Article


"Best Common Practise for using OPENPGPKEY records" - Paul Wouters

2014-04-10, rev -00: The OPENPGPKEY DNS Resource Record can be used to match an email address to an OpenPGP key. This document specifies a Best Common Practise ("BCP") for email clients, MUA's and...

View Article

"SMTP security via opportunistic DANE TLS" - Viktor Dukhovni, Wesley Hardaker

2014-04-23, rev -08: This memo describes a downgrade-resistant protocol for SMTP transport security between Mail Transfer Agents (MTAs) based on the DNS-Based Authentication of Named Entities (DANE)...

View Article

"SMTP security via opportunistic DANE TLS" - Viktor Dukhovni, Wesley Hardaker

2014-05-05, rev -09: This memo describes a downgrade-resistant protocol for SMTP transport security between Mail Transfer Agents (MTAs) based on the DNS-Based Authentication of Named Entities (DANE)...

View Article


"SMTP security via opportunistic DANE TLS" - Viktor Dukhovni, Wesley Hardaker

2014-05-25, rev -10: This memo describes a downgrade-resistant protocol for SMTP transport security between Mail Transfer Agents (MTAs) based on the DNS-Based Authentication of Named Entities (DANE)...

View Article


"Using DNS-Based Authentication of Named Entities (DANE) TLSA Records with...

2014-06-10, rev -06: The DANE specification (RFC 6698) describes how to use TLSA resource records in the DNS to associate a server's host name with its TLS certificate, where the association is secured...

View Article

"Updates to and Operational Guidance for the DANE Protocol" - Viktor...

2014-06-23, rev -04: This memo clarifies and updates the DANE TLSA protocol based on implementation experience since the publication of the original specification [RFC6698]. It also contains guidance...

View Article

"Authenticating Raw Public Keys with DANE TLSA" - John Gilmore

2014-07-03, rev -00: This document standardizes how the Domain Name System can authenticate Raw Public Keys. Transport Level Security now has the option to use Raw Public Keys, but they require some...

View Article

"Updates to and Operational Guidance for the DANE Protocol" - Viktor...

2014-07-03, rev -05: This memo clarifies and updates the DANE TLSA protocol based on implementation experience since the publication of the original DANE specification in [RFC6698]. It also contains...

View Article


"Using DNS-Based Authentication of Named Entities (DANE) TLSA Records with...

2014-07-23, rev -07: The DANE specification (RFC 6698) describes how to use TLSA resource records in the DNS to associate a server's host name with its TLS certificate, where the association is secured...

View Article

"SMTP security via opportunistic DANE TLS" - Viktor Dukhovni, Wesley Hardaker

2014-08-02, rev -11: This memo describes a downgrade-resistant protocol for SMTP transport security between Mail Transfer Agents (MTAs) based on the DNS-Based Authentication of Named Entities (DANE)...

View Article


"Updates to and Operational Guidance for the DANE Protocol" - Viktor...

2014-08-16, rev -06: This memo clarifies and updates the DANE TLSA protocol based on implementation experience since the publication of the original DANE specification in [RFC6698]. It also contains...

View Article

"SMTP security via opportunistic DANE TLS" - Viktor Dukhovni, Wesley Hardaker

2014-08-17, rev -12: This memo describes a downgrade-resistant protocol for SMTP transport security between Mail Transfer Agents (MTAs) based on the DNS-Based Authentication of Named Entities (DANE)...

View Article


"Using Secure DNS to Associate Certificates with Domain Names For S/MIME" -...

2014-08-22, rev -07: This document describes how to use secure DNS to associate an S/MIME user's certificate with the intended domain name, similar to the way that DANE (RFC 6698) does for TLS.

View Article

"Using DNS-Based Authentication of Named Entities (DANE) TLSA Records with...

2014-10-21, rev -08: The DANE specification (RFC 6698) describes how to use TLSA resource records in the DNS to associate a server's host name with its TLS certificate, where the association is secured...

View Article

"Updates to and Operational Guidance for the DANE Protocol" - Viktor...

2014-10-25, rev -07: This memo clarifies and updates the DNS-Based Authentication of Named Entities (DANE) TLSA specification based on subsequent implementation experience. It also contains guidance...

View Article
Browsing all 72 articles
Browse latest View live