RFC 9325: TLS Recommendations

by Peter Saint-Andre

2022-11-30

Back in 2015, I co-authored an IETF specification (RFC 7525) describing best practices for the use of Transport Layer Security (TLS) on the Internet. Much has happened since then: new security vulnerabilities, new deployment scenarios, and especially a new version of the TLS protocol (RFC 8446, published in August 2018). Thus it was time for us to define updated recommendations, which Yaron Sheffer, Thomas Fossati, and I have just done in RFC 9325. For more detailed information about the changes we made, take a few minutes to read Yaron's blog post.

FOR FURTHER EXPLORATION


Peter Saint-Andre > Journal