Pre-Shared Key Ciphersuites for Transport Layer Security
RFC 4279, “Pre-Shared Key Ciphersuites for Transport Layer Security”, is a Proposed Standard document published in December 2005 by P. Eronen, H. Tschofenig. It has since been updated by RFC 8996. The canonical text is published by the RFC Editor.
Abstract
This document specifies three sets of new ciphersuites for the Transport Layer Security (TLS) protocol to support authentication based on pre-shared keys (PSKs). These pre-shared keys are symmetric keys, shared in advance among the communicating parties. The first set of ciphersuites uses only symmetric key operations for authentication. The second set uses a Diffie-Hellman exchange authenticated with a pre-shared key, and the third set combines public key authentication of the server with pre-shared key authentication of the client. [STANDARDS-TRACK]
What “Proposed Standard” means
An entry-level standards-track specification: stable, peer-reviewed and a solid basis for implementation, though it may still evolve before becoming an Internet Standard.
The canonical text of RFC 4279 is hosted at rfc-editor.org. Available in TXT,HTML.
- RFC 4280 Dynamic Host Configuration Protocol Options for Broadcast and Multicast Control Servers
- RFC 4281 The Codecs Parameter for "Bucket" Media Types
- RFC 4282 The Network Access Identifier
- RFC 4283 Mobile Node Identifier Option for Mobile IPv6
- RFC 4286 Multicast Router Discovery
- RFC 4287 The Atom Syndication Format
- RFC 4270 Attacks on Cryptographic Hashes in Internet Protocols
- RFC 4288 Media Type Specifications and Registration Procedures