Protocol Action: 'Legacy RSASSA-PKCS1-v1_5 codepoints for TLS 1.3' to Proposed Standard (draft-ietf-tls-tls13-pkcs1-07.txt)

The IESG <iesg-secretary@ietf.org> Wed, 03 December 2025 00:40 UTC

Return-Path: <iesg-secretary@ietf.org>
X-Original-To: ietf-announce@ietf.org
Delivered-To: ietf-announce@mail2.ietf.org
Received: from [10.244.8.105] (unknown [4.156.85.76]) by mail2.ietf.org (Postfix) with ESMTP id 0E30E9442322; Tue, 2 Dec 2025 16:40:00 -0800 (PST)
MIME-Version: 1.0
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: 7bit
From: The IESG <iesg-secretary@ietf.org>
To: IETF-Announce <ietf-announce@ietf.org>
Subject: Protocol Action: 'Legacy RSASSA-PKCS1-v1_5 codepoints for TLS 1.3' to Proposed Standard (draft-ietf-tls-tls13-pkcs1-07.txt)
X-Test-IDTracker: no
X-IETF-IDTracker: 12.54.0
Auto-Submitted: auto-generated
Precedence: bulk
MIME-Version: 1.0
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: 7bit
Message-ID: <176472240000.3965588.3003276933180181492@dt-datatracker-5bd94c585b-wk4l4>
Date: Tue, 02 Dec 2025 16:40:00 -0800
Message-ID-Hash: HS6J4U46DPRAGIXZQSGXFEBYIZ3MIH7G
X-Message-ID-Hash: HS6J4U46DPRAGIXZQSGXFEBYIZ3MIH7G
X-MailFrom: iesg-secretary@ietf.org
X-Mailman-Rule-Misses: dmarc-mitigation; no-senders; approved; emergency; loop; banned-address; member-moderation; header-match-ietf-announce.ietf.org-0; nonmember-moderation; administrivia; implicit-dest; max-recipients; max-size; news-moderation; no-subject; digests; suspicious-header
CC: The IESG <iesg@ietf.org>, draft-ietf-tls-tls13-pkcs1@ietf.org, paul.wouters@aiven.io, rfc-editor@rfc-editor.org, tls-chairs@ietf.org, tls@ietf.org
X-Mailman-Version: 3.3.9rc6
List-Id: "IETF announcement list. No discussions." <ietf-announce.ietf.org>
Archived-At: <https://mailarchive.ietf.org/arch/msg/ietf-announce/EyLdX9NBuJBfsNkkQEzsm-H_PnM>
List-Archive: <https://mailarchive.ietf.org/arch/browse/ietf-announce>
List-Help: <mailto:ietf-announce-request@ietf.org?subject=help>
List-Owner: <mailto:ietf-announce-owner@ietf.org>
List-Post: <mailto:ietf-announce@ietf.org>
List-Subscribe: <mailto:ietf-announce-join@ietf.org>
List-Unsubscribe: <mailto:ietf-announce-leave@ietf.org>

The IESG has approved the following document:
- 'Legacy RSASSA-PKCS1-v1_5 codepoints for TLS 1.3'
  (draft-ietf-tls-tls13-pkcs1-07.txt) as Proposed Standard

This document is the product of the Transport Layer Security Working Group.

The IESG contact persons are Paul Wouters and Deb Cooley.

A URL of this Internet-Draft is:
https://datatracker.ietf.org/doc/draft-ietf-tls-tls13-pkcs1/




Technical Summary

   This document allocates code points for the use of RSASSA-PKCS1-v1_5
   with client certificates in TLS 1.3.  This removes an obstacle for
   some deployments to migrate to TLS 1.3.

Working Group Summary

There was broad agreement to adopt this I-D. The biggest point of controversy,
if you want to call it that, is whether to adopt the I-D at all. After ripping
RSA signatures out of TLS 1.3 nobody wanted to add them back, but people understood
and accepted thereality of the situation as discussed in the I-D.

Document Quality

Implementations: Chromium/BoringSSL and Edge browsers; Web server:
IIS/HTTP.SYS; HTTP client libraries WinInet, WinHTTP, .NET.

Personnel

   The Document Shepherd for this document is Sean Turner. The Responsible
   Area Director is Paul Wouters.