Tunnel Extensible Authentication Protocol Version 1
RFC 9930, “Tunnel Extensible Authentication Protocol Version 1”, is a Proposed Standard document published in February 2026 by A. DeKok. It updates RFC 9427. It obsoletes RFC 7170. The canonical text is published by the RFC Editor.
Abstract
This document defines the Tunnel Extensible Authentication Protocol (TEAP) version 1. TEAP is a tunnel-based EAP method that enables secure communication between a peer and a server by using the Transport Layer Security (TLS) protocol to establish a mutually authenticated tunnel. Within the tunnel, TLV objects are used to convey authentication-related data between the EAP peer and the EAP server. This document obsoletes RFC 7170 and updates RFC 9427 by moving all TEAP specifications from those documents to this one.
What “Proposed Standard” means
An entry-level standards-track specification: stable, peer-reviewed and a solid basis for implementation, though it may still evolve before becoming an Internet Standard.
The canonical text of RFC 9930 is hosted at rfc-editor.org. Available in HTML,TXT,PDF,XML.
- RFC 9929 IGP Unreachable Prefix Announcement
- RFC 9931 Security Considerations for Optimistic Protocol Transitions in HTTP/1.1
- RFC 9928 DHCPv4 over DHCPv6 with Relay Agent Support
- RFC 9932 Mutually Authenticating TLS in the Context of Federations
- RFC 9927 Fixing the C-Flag in the Extended Address Registration Option
- RFC 9926 Prefix Registration for IPv6 Neighbor Discovery
- RFC 9934 Privacy-Enhanced Mail File Format for Encrypted ClientHello
- RFC 9925 Unsigned X.509 Certificates