Security Considerations for WebRTC
RFC 8826, “Security Considerations for WebRTC”, is a Proposed Standard document published in January 2021 by E. Rescorla. The canonical text is published by the RFC Editor.
Abstract
WebRTC is a protocol suite for use with real-time applications that can be deployed in browsers -- "real-time communication on the Web". This document defines the WebRTC threat model and analyzes the security threats of WebRTC in that model.
What “Proposed Standard” means
An entry-level standards-track specification: stable, peer-reviewed and a solid basis for implementation, though it may still evolve before becoming an Internet Standard.
The canonical text of RFC 8826 is hosted at rfc-editor.org. Available in HTML,TXT,PDF,XML.
- RFC 8825 Overview: Real-Time Protocols for Browser-Based Applications
- RFC 8827 WebRTC Security Architecture
- RFC 8824 Static Context Header Compression for the Constrained Application Protocol
- RFC 8828 WebRTC IP Address Handling Requirements
- RFC 8823 Extensions to Automatic Certificate Management Environment for End- User S/MIME Certificates
- RFC 8829 JavaScript Session Establishment Protocol
- RFC 8822 5G Wireless Wireline Convergence User Plane Encapsulation
- RFC 8830 WebRTC MediaStream Identification in the Session Description Protocol