Host Identity Protocol Certificates
RFC 8002, “Host Identity Protocol Certificates”, is a Proposed Standard document published in October 2016 by T. Heer, S. Varjonen. It updates RFC 7401. It obsoletes RFC 6253. The canonical text is published by the RFC Editor.
Abstract
The Certificate (CERT) parameter is a container for digital certificates. It is used for carrying these certificates in Host Identity Protocol (HIP) control packets. This document specifies the certificate parameter and the error signaling in case of a failed verification. Additionally, this document specifies the representations of Host Identity Tags (HITs) in X.509 version 3 (v3).
The concrete use cases of certificates, including how certificates are obtained and requested and which actions are taken upon successful or failed verification, are specific to the scenario in which the certificates are used. Hence, the definition of these scenario-specific aspects is left to the documents that use the CERT parameter.
This document updates RFC 7401 and obsoletes RFC 6253.
What “Proposed Standard” means
An entry-level standards-track specification: stable, peer-reviewed and a solid basis for implementation, though it may still evolve before becoming an Internet Standard.
The canonical text of RFC 8002 is hosted at rfc-editor.org. Available in TXT,HTML.
- RFC 8003 Host Identity Protocol Registration Extension
- RFC 8000 Requirements for NFSv4 Multi-Domain Namespace Deployment
- RFC 8004 Host Identity Protocol Rendezvous Extension
- RFC 7999 BLACKHOLE Community
- RFC 8005 Host Identity Protocol Domain Name System Extension
- RFC 7998 "xml2rfc" Version 3 Preparation Tool Description
- RFC 8006 Content Delivery Network Interconnection Metadata
- RFC 7997 The Use of Non-ASCII Characters in RFCs