%% You should probably cite draft-dukhovni-smtp-opportunistic-tls-01 instead of this revision. @techreport{dukhovni-smtp-opportunistic-tls-00, number = {draft-dukhovni-smtp-opportunistic-tls-00}, type = {Internet-Draft}, institution = {Internet Engineering Task Force}, publisher = {Internet Engineering Task Force}, note = {Work in Progress}, url = {https://datatracker.ietf.org/doc/draft-dukhovni-smtp-opportunistic-tls/00/}, author = {Viktor Dukhovni}, title = {{SMTP security via opportunistic DANE TLS}}, pagetotal = 13, year = 2013, month = may, day = 19, abstract = {This memo describes an experimental protocol for opportunistic TLS security based on the DANE TLSA PKI. The design goal is an incremental transition of the Internet email backbone (MTA to MTA SMTP traffic) from today's unauthenticated and typically unencrypted connections to TLS encrypted and authenticated delivery when the client is DANE TLSA aware and the server domain publishes DANE TLSA records for its MX hosts. This protocol has been implemented by author in the Postfix MTA. It is hoped that other MTA implementations will find this protocol well suited to their needs and will adopt interoperable implementations. This protocol may be suited to other use-cases for opportunistic TLS beyond SMTP, but such use-cases are not covered here, and will need to be defined in separate specifications.}, }