RFC 7525 · BEST CURRENT PRACTICE · 2015

Recommendations for Secure Use of Transport Layer Security and Datagram Transport Layer Security

Overview

RFC 7525, “Recommendations for Secure Use of Transport Layer Security and Datagram Transport Layer Security”, is a Best Current Practice document published in May 2015 by Y. Sheffer, R. Holz, P. Saint-Andre. It has since been updated by RFC 8996. It has been obsoleted by RFC 9325 — refer to the newer document for the authoritative version. The canonical text is published by the RFC Editor.

Abstract

Transport Layer Security (TLS) and Datagram Transport Layer Security (DTLS) are widely used to protect data exchanged over application protocols such as HTTP, SMTP, IMAP, POP, SIP, and XMPP. Over the last few years, several serious attacks on TLS have emerged, including attacks on its most commonly used cipher suites and their modes of operation. This document provides recommendations for improving the security of deployed services that use TLS and DTLS. The recommendations are applicable to the majority of use cases.

Abstract as published in the RFC, via rfc-editor.org.

What “Best Current Practice” means

Documents the IETF community's recommended operational or procedural practice rather than a protocol specification.

Read this RFC

The canonical text of RFC 7525 is hosted at rfc-editor.org. Available in TXT,HTML.

Relationships to other RFCs
Obsoleted by
RFC 9325
Updated by
RFC 8996
Other RFCs from 2015

Who Is Online

In total there are 34 users online: 0 registered, 27 guests and 7 bots.

Most users ever online was 5,555 on 17 Jul 2026, 3:23 am.

Bots: Applebot Baiduspider Bingbot Googlebot Other Bot PetalBot SemrushBot

Users active in the past 15 minutes. Total registered members: 372