[tsvwg] I-D Action: draft-ietf-tsvwg-dtls-over-sctp-bis-06.txt
internet-drafts@ietf.org Mon, 24 April 2023 07:18 UTC
Return-Path: <internet-drafts@ietf.org>
X-Original-To: tsvwg@ietf.org
Delivered-To: tsvwg@ietfa.amsl.com
Received: from ietfa.amsl.com (localhost [IPv6:::1]) by ietfa.amsl.com (Postfix) with ESMTP id 3592FC151549; Mon, 24 Apr 2023 00:18:20 -0700 (PDT)
MIME-Version: 1.0
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: 8bit
From: internet-drafts@ietf.org
To: i-d-announce@ietf.org
Cc: tsvwg@ietf.org
X-Test-IDTracker: no
X-IETF-IDTracker: 10.0.0
Auto-Submitted: auto-generated
Precedence: bulk
Reply-To: tsvwg@ietf.org
Message-ID: <168232070017.25206.16753892875932403058@ietfa.amsl.com>
Date: Mon, 24 Apr 2023 00:18:20 -0700
Archived-At: <https://mailarchive.ietf.org/arch/msg/tsvwg/QGs90buIRy5-Czao400hDiJBhE8>
Subject: [tsvwg] I-D Action: draft-ietf-tsvwg-dtls-over-sctp-bis-06.txt
X-BeenThere: tsvwg@ietf.org
X-Mailman-Version: 2.1.39
List-Id: Transport Area Working Group <tsvwg.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/tsvwg>, <mailto:tsvwg-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/tsvwg/>
List-Post: <mailto:tsvwg@ietf.org>
List-Help: <mailto:tsvwg-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/tsvwg>, <mailto:tsvwg-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 24 Apr 2023 07:18:20 -0000
A New Internet-Draft is available from the on-line Internet-Drafts
directories. This Internet-Draft is a work item of the Transport Area Working
Group (TSVWG) WG of the IETF.
Title : Datagram Transport Layer Security (DTLS) over Stream Control Transmission Protocol (SCTP)
Authors : Magnus Westerlund
John Preuß Mattsson
Claudio Porfiri
Filename : draft-ietf-tsvwg-dtls-over-sctp-bis-06.txt
Pages : 43
Date : 2023-04-24
Abstract:
This document describes the usage of the Datagram Transport Layer
Security (DTLS) protocol to protect user messages sent over the
Stream Control Transmission Protocol (SCTP). It is an improved
alternative to the existing RFC 6083.
DTLS over SCTP provides mutual authentication, confidentiality,
integrity protection, and replay protection for applications that use
SCTP as their transport protocol and allows client/server
applications to communicate in a way that is designed to give
communications privacy and to prevent eavesdropping and detect
tampering or message forgery.
Applications using DTLS over SCTP can use almost all transport
features provided by SCTP and its extensions. This document is an
improved alternative to RFC 6083 and removes the 16 kB limitation on
protected user message size by defining a secure user message
fragmentation so that multiple DTLS records can be used to protect a
single user message. It further contains a large number of security
fixes and improvements. It updates the DTLS versions and SCTP-AUTH
HMAC algorithms to use. It mitigates reflection attacks of data and
control chunks and replay attacks of data chunks. It simplifies
secure implementation by some stricter requirements on the
establishment procedures as well as rekeying to align with zero trust
principles.
The IETF datatracker status page for this Internet-Draft is:
https://datatracker.ietf.org/doc/draft-ietf-tsvwg-dtls-over-sctp-bis/
There is also an HTML version available at:
https://www.ietf.org/archive/id/draft-ietf-tsvwg-dtls-over-sctp-bis-06.html
A diff from the previous version is available at:
https://author-tools.ietf.org/iddiff?url2=draft-ietf-tsvwg-dtls-over-sctp-bis-06
Internet-Drafts are also available by rsync at rsync.ietf.org::internet-drafts
- [tsvwg] I-D Action: draft-ietf-tsvwg-dtls-over-sc… internet-drafts