Personal Assertion Token Extension for Signature-based Handling of Asserted information using toKENs
RFC 8588, “Personal Assertion Token Extension for Signature-based Handling of Asserted information using toKENs”, is a Proposed Standard document published in May 2019 by C. Wendt, M. Barnes. The canonical text is published by the RFC Editor.
Abstract
This document extends the Personal Assertion Token (PASSporT), which is a token object that conveys cryptographically signed information about the participants involved in communications. The extension is defined based on the "Signature-based Handling of Asserted information using toKENs (SHAKEN)" specification by the ATIS/SIP Forum IP-NNI Task Group. It provides both (1) a specific set of levels of confidence in the correctness of the originating identity of a call originated in a SIP-based telephone network as well as (2) an identifier that allows the Service Provider (SP) to uniquely identify the origin of the call within its network.
What “Proposed Standard” means
An entry-level standards-track specification: stable, peer-reviewed and a solid basis for implementation, though it may still evolve before becoming an Internet Standard.
The canonical text of RFC 8588 is hosted at rfc-editor.org. Available in TXT,HTML.
- RFC 8587 NFS Version 4.0 Trunking Update
- RFC 8589 The 'leaptofrogans' URI Scheme
- RFC 8586 Loop Detection in Content Delivery Networks
- RFC 8590 Change Poll Extension for the Extensible Provisioning Protocol
- RFC 8585 Requirements for IPv6 Customer Edge Routers to Support IPv4-as-a- Service
- RFC 8591 SIP-Based Messaging with S/MIME
- RFC 8584 Framework for Ethernet VPN Designated Forwarder Election Extensibility
- RFC 8592 Key Performance Indicator Stamping for the Network Service Header