Cryptographic Algorithms for the TCP Authentication Option
RFC 5926, “Cryptographic Algorithms for the TCP Authentication Option”, is a Proposed Standard document published in June 2010 by G. Lebovitz, E. Rescorla. The canonical text is published by the RFC Editor.
Abstract
The TCP Authentication Option (TCP-AO) relies on security algorithms to provide authentication between two end-points. There are many such algorithms available, and two TCP-AO systems cannot interoperate unless they are using the same algorithms. This document specifies the algorithms and attributes that can be used in TCP-AO's current manual keying mechanism and provides the interface for future message authentication codes (MACs). [STANDARDS-TRACK]
What “Proposed Standard” means
An entry-level standards-track specification: stable, peer-reviewed and a solid basis for implementation, though it may still evolve before becoming an Internet Standard.
The canonical text of RFC 5926 is hosted at rfc-editor.org. Available in TXT,HTML.
- RFC 5925 The TCP Authentication Option
- RFC 5927 ICMP Attacks against TCP
- RFC 5924 Extended Key Usage for Session Initiation Protocol X.509 Certificates
- RFC 5928 Traversal Using Relays around NAT Resolution Mechanism
- RFC 5923 Connection Reuse in the Session Initiation Protocol
- RFC 5929 Channel Bindings for TLS
- RFC 5922 Domain Certificates in the Session Initiation Protocol
- RFC 5930 Using Advanced Encryption Standard Counter Mode with the Internet Key Exchange version 02 Protocol