RFC 9848 · PROPOSED STANDARD · 2026

Bootstrapping TLS Encrypted ClientHello with DNS Service Bindings

Overview

RFC 9848, “Bootstrapping TLS Encrypted ClientHello with DNS Service Bindings”, is a Proposed Standard document published in March 2026 by B. Schwartz, M. Bishop, E. Nygren. The canonical text is published by the RFC Editor.

Abstract

To use TLS Encrypted ClientHello (ECH), the client needs to learn the ECH configuration for a server before it attempts a connection to the server. This specification provides a mechanism for conveying the ECH configuration information via DNS, using a SVCB or HTTPS resource record (RR).

Abstract as published in the RFC, via rfc-editor.org.

What “Proposed Standard” means

An entry-level standards-track specification: stable, peer-reviewed and a solid basis for implementation, though it may still evolve before becoming an Internet Standard.

Read this RFC

The canonical text of RFC 9848 is hosted at rfc-editor.org. Available in HTML,TXT,PDF,XML.

Other RFCs from 2026