RFC 5216 · PROPOSED STANDARD · 2008

The EAP-TLS Authentication Protocol

Overview

RFC 5216, “The EAP-TLS Authentication Protocol”, is a Proposed Standard document published in March 2008 by D. Simon, B. Aboba, R. Hurst. It obsoletes RFC 2716. It has since been updated by RFC 8996, RFC 9190, RFC 9965. The canonical text is published by the RFC Editor.

Abstract

The Extensible Authentication Protocol (EAP), defined in RFC 3748, provides support for multiple authentication methods. Transport Layer Security (TLS) provides for mutual authentication, integrity-protected ciphersuite negotiation, and key exchange between two endpoints. This document defines EAP-TLS, which includes support for certificate-based mutual authentication and key derivation.

This document obsoletes RFC 2716. A summary of the changes between this document and RFC 2716 is available in Appendix A. [STANDARDS-TRACK]

Abstract as published in the RFC, via rfc-editor.org.

What “Proposed Standard” means

An entry-level standards-track specification: stable, peer-reviewed and a solid basis for implementation, though it may still evolve before becoming an Internet Standard.

Read this RFC

The canonical text of RFC 5216 is hosted at rfc-editor.org. Available in TXT,HTML.

Relationships to other RFCs
This RFC obsoletes
RFC 2716
Other RFCs from 2008

Who Is Online

In total there are 88 users online: 0 registered, 83 guests and 5 bots.

Most users ever online was 1,226 on 13 Jun 2026, 3:56 am.

Bots: AhrefsBot Applebot Baiduspider Other Bot SemrushBot

Users active in the past 15 minutes. Total registered members: 354