RFC 5746-2010
Transport Layer Security (TLS) Renegotiation Indication Extension (Updates: 5246@ 4366@ 4347@ 4346@ 2246)

Standard No.
RFC 5746-2010
Release Date
2010
Published By
IETF - Internet Engineering Task Force
Latest
RFC 5746-2010
Scope
Introduction TLS [RFC5246] allows either the client or the server to initiate renegotiation -- a new handshake that establishes new cryptographic parameters. Unfortunately@ although the new handshake is carried out using the cryptographic parameters established by the original handshake@ there is no cryptographic binding between the two. This creates the opportunity for an attack in which the attacker who can intercept a client's transport layer connection can inject traffic of his own as a prefix to the client's interaction with the server.

RFC 5746-2010 history

  • 2010 RFC 5746-2010 Transport Layer Security (TLS) Renegotiation Indication Extension (Updates: 5246@ 4366@ 4347@ 4346@ 2246)



Copyright ©2024 All Rights Reserved