Updated Transport Layer Security Server Identity Check Procedure for Email-Related Protocols
RFC 7817, “Updated Transport Layer Security Server Identity Check Procedure for Email-Related Protocols”, is a Proposed Standard document published in March 2016 by A. Melnikov. It updates RFC 2595, RFC 3207, RFC 3501, RFC 5804. The canonical text is published by the RFC Editor.
Abstract
This document describes the Transport Layer Security (TLS) server identity verification procedure for SMTP Submission, IMAP, POP, and ManageSieve clients. It replaces Section 2.4 (Server Identity Check) of RFC 2595 and updates Section 4.1 (Processing After the STARTTLS Command) of RFC 3207, Section 11.1 (STARTTLS Security Considerations) of RFC 3501, and Section 2.2.1 (Server Identity Check) of RFC 5804.
What “Proposed Standard” means
An entry-level standards-track specification: stable, peer-reviewed and a solid basis for implementation, though it may still evolve before becoming an Internet Standard.
The canonical text of RFC 7817 is hosted at rfc-editor.org. Available in TXT,HTML.
- RFC 7816 DNS Query Name Minimisation to Improve Privacy
- RFC 7818 URN Namespace for MEF Documents
- RFC 7815 Minimal Internet Key Exchange Version 2 Initiator Implementation
- RFC 7819 Privacy Considerations for DHCP
- RFC 7814 Virtual Subnet: A BGP/MPLS IP VPN-Based Subnet Extension Solution
- RFC 7820 UDP Checksum Complement in the One-Way Active Measurement Protocol and Two-Way Active Measurement Protocol
- RFC 7813 IS-IS Path Control and Reservation
- RFC 7821 UDP Checksum Complement in the Network Time Protocol