RFC 7366 · PROPOSED STANDARD · 2014

Encrypt-then-MAC for Transport Layer Security and Datagram Transport Layer Security

Overview

RFC 7366, “Encrypt-then-MAC for Transport Layer Security and Datagram Transport Layer Security”, is a Proposed Standard document published in September 2014 by P. Gutmann. The canonical text is published by the RFC Editor.

Abstract

This document describes a means of negotiating the use of the encrypt-then-MAC security mechanism in place of the existing MAC-then-encrypt mechanism in Transport Layer Security (TLS) and Datagram Transport Layer Security (DTLS). The MAC-then-encrypt mechanism has been the subject of a number of security vulnerabilities over a period of many years.

Abstract as published in the RFC, via rfc-editor.org.

What “Proposed Standard” means

An entry-level standards-track specification: stable, peer-reviewed and a solid basis for implementation, though it may still evolve before becoming an Internet Standard.

Read this RFC

The canonical text of RFC 7366 is hosted at rfc-editor.org. Available in TXT,HTML.

Other RFCs from 2014

Who Is Online

In total there are 53 users online: 0 registered, 46 guests and 7 bots.

Most users ever online was 1,226 on 13 Jun 2026, 3:56 am.

Bots: Applebot Googlebot Majestic Other Bot Other Crawler SemrushBot Sogou

Users active in the past 15 minutes. Total registered members: 354