Transport Layer Security (tls)
------------------------------

Charter
Last Modified: 2006-04-17

Current Status: Active Working Group

Chair(s):
    Eric Rescorla  <[email protected]>
    Pasi Eronen  <[email protected]>

Security Area Director(s):
    Russ Housley  <[email protected]>
    Sam Hartman  <[email protected]>

Security Area Advisor:
    Russ Housley  <[email protected]>

Technical Advisor(s):
    Allison Mankin  <[email protected]>

Mailing Lists:
    General Discussion:[email protected]
    To Subscribe:      https://www1.ietf.org/mailman/listinfo/tls
    Archive:           http://www.ietf.org/mail-archive/web/tls/current/index.html

Description of Working Group:

The TLS Working Group was established in 1996 to standardize a
'transport layer' security protocol. The working group began with SSL
version 3.0. The TLS Working Group has completed a series of
specifications that describe the Transport Layer Security protocol
versions 1.0 and 1.1, extensions to the protocol, and new
ciphersuites to be used with TLS.

The primary goal of the WG is to publish a revision of TLS, version
1.2, that removes the protocol's dependency on the MD5 and SHA-1 digest
algorithms, which have been either wholly or partially compromised by
recent research. The TLS WG will also work on new authenticated
encryption modes for TLS, including modes based on counter mode
encryption (CTR) and combined encryption/authentication modes, and
may define major new cipher suites for TLS for this purpose. In the
preparation of TLS 1.2, the WG will attempt to avoid gratuitous
changes to TLS 1.1.

Goals and Milestones:

  Done         Agreement on charter and issues in current draft.

  Done         Final draft for Secure Transport Layer Protocol ('STLP')

  Done         Working group 'Last Call'

  Done         Submit to IESG for consideration as a Proposed Standard.

  Done         First revised draft of TLS specification

  Done         TSL 1.1 Specification

  Done         First draft of TLS 1.2 specification, including CTR mode cipher
               suites

  Done         First draft of specification for cipher suites with combined
               encryption/authentication modes

  Dec 2006       Submit specification of TLS 1.2 specification to IESG for
               publication as Proposed Standard

  Dec 2006       Submit specification of cipher suites with combined
               encryption/authentication modes to IESG for publication, with
               at least one of these suites to be Proposed Standard


Internet-Drafts:

Posted Revised         I-D Title   <Filename>
------ ------- --------------------------------------------
Mar 2001 Jun 2006   <draft-ietf-tls-srp-12.txt>
               Using SRP for TLS Authentication

Jan 2002 Aug 2006   <draft-ietf-tls-openpgp-keys-11.txt>
               Using OpenPGP keys for TLS authentication

Feb 2006 Jun 2006   <draft-ietf-tls-ctr-01.txt>
               AES Counter Mode Cipher Suites for TLS and DTLS

Mar 2006 Jun 2006   <draft-ietf-tls-rfc4346-bis-01.txt>
               The TLS Protocol

Jul 2006 Oct 2006   <draft-ietf-tls-psk-null-02.txt>
               Pre-Shared Key Cipher Suites with NULL Encryption for Transport
               Layer Security (TLS)

Oct 2006 Oct 2006   <draft-ietf-tls-interoperability-00.txt>
               Clientside interoperability experiences for the SSL and TLS
               protocols

Request For Comments:

 RFC   Stat Published     Title
------- -- ----------- ------------------------------------
RFC2246 PS   Jan 1999    The TLS Protocol Version 1.0

RFC2712 PS   Oct 1999    Addition of Kerberos Cipher Suites to Transport Layer
                      Security (TLS)

RFC2817 PS   May 2000    Upgrading to TLS Within HTTP/1.1

RFC2818 I    Jun 2000    HTTP Over TLS

RFC3268 PS   Jul 2002    AES Ciphersuites for TLS

RFC3546 PS   Jun 2003    Transport Layer Security (TLS) Extensions

RFC3749Standard  May 2004    Transport Layer Security Protocol Compression Methods

RFC4132Standard  Jul 2005    Addition of Camellia Cipher Suites to Transport Layer
                      Security (TLS)

RFC4279Standard  Dec 2005    Pre-Shared Key Ciphersuites for Transport Layer Security
                      (TLS)

RFC4346 PS   Apr 2006    The The Transport Layer Security (TLS) Protocol Version
                      1.1

RFC4366 PS   Apr 2006    Transport Layer Security (TLS) Extensions

RFC4492 I    May 2006    Elliptic Curve Cryptography (ECC) Cipher Suites for
                      Transport Layer Security (TLS)