Secure SMTP using DNS-Based Authentication of Named Entities (DANE) TLSA records.
draft-ietf-dane-smtp-01
Document | Type |
Expired Internet-Draft
(dane WG)
Expired & archived
|
|
---|---|---|---|
Author | Tony Finch | ||
Last updated | 2013-08-29 (Latest revision 2013-02-25) | ||
Replaces | draft-fanf-dane-smtp | ||
RFC stream | Internet Engineering Task Force (IETF) | ||
Intended RFC status | (None) | ||
Formats | |||
Additional resources | Mailing list discussion | ||
Stream | WG state | WG Document | |
Document shepherd | (None) | ||
IESG | IESG state | Expired | |
Consensus boilerplate | Unknown | ||
Telechat date | (None) | ||
Responsible AD | (None) | ||
Send notices to | (None) |
This Internet-Draft is no longer active. A copy of the expired Internet-Draft is available in these formats:
Abstract
SMTP has a STARTTLS extension, but (especially in the case of inter- domain mail transfer) it only provides very limited security because it does not specify how to authenticate the server's certificate. This memo specifies how TLSA records in the DNS can be used for proper SMTP server authentication.
Authors
(Note: The e-mail addresses provided for the authors of this Internet-Draft may no longer be valid.)