RFC 9733 · PROPOSED STANDARD · 2025

BRSKI with Alternative Enrollment

Overview

RFC 9733, “BRSKI with Alternative Enrollment”, is a Proposed Standard document published in March 2025 by D. von Oheimb, S. Fries, H. Brockhaus. The canonical text is published by the RFC Editor.

Abstract

This document defines enhancements to the Bootstrapping Remote Secure Key Infrastructure (BRSKI) protocol, known as BRSKI with Alternative Enrollment (BRSKI-AE). BRSKI-AE extends BRSKI to support certificate enrollment mechanisms instead of the originally specified use of Enrollment over Secure Transport (EST). It supports certificate enrollment protocols such as the Certificate Management Protocol (CMP) that use authenticated self-contained signed objects for certification messages, allowing for flexibility in network device onboarding scenarios. The enhancements address use cases where the existing enrollment mechanism may not be feasible or optimal, providing a framework for integrating suitable alternative enrollment protocols. This document also updates the BRSKI reference architecture to accommodate these alternative methods, ensuring secure and scalable deployment across a range of network environments.

Abstract as published in the RFC, via rfc-editor.org.

What “Proposed Standard” means

An entry-level standards-track specification: stable, peer-reviewed and a solid basis for implementation, though it may still evolve before becoming an Internet Standard.

Read this RFC

The canonical text of RFC 9733 is hosted at rfc-editor.org. Available in HTML,TXT,PDF,XML.

Other RFCs from 2025

Who Is Online

In total there are 493 users online: 0 registered, 488 guests and 5 bots.

Most users ever online was 1,226 on 13 Jun 2026, 3:56 am.

Bots: AhrefsBot Applebot Other Bot Other Crawler SemrushBot

Users active in the past 15 minutes. Total registered members: 354