EAP-TLS 1.3: Using the Extensible Authentication Protocol with TLS 1.3
Metadata
- Publisher
- IETF
- Doc Type
- Standard
- Pages
- 31
- Abstract
- The Extensible Authentication Protocol (EAP), defined in RFC 3748, provides a standard mechanism for support of multiple authentication methods. This document specifies the use of EAP-TLS with TLS 1.3 while remaining backwards compatible with existing implementations of EAP-TLS. TLS 1.3 provides significantly improved security and privacy, and reduced latency when compared to earlier versions of TLS. EAP-TLS with TLS 1.3 (EAP-TLS 1.3) further improves security and privacy by always providing forward secrecy, never disclosing the peer identity, and by mandating use of revocation checking when compared to EAP-TLS with earlier versions of TLS. This document also provides guidance on authentication, authorization, and resumption for EAP-TLS in general (regardless of the underlying TLS version used). This document updates RFC 5216.
- Publication Date
- 2022-02-01
- Status Note
- Proposed Standard
- DOI
10.17487/RFC9190- Link
- https://doi.org/10.17487/RFC9190
- Author(s)
- John Preuß MattssonMohit Sethi
Latest version of IETF RFC 9190
Document Versions — IETF RFC 9190
-
▶ IETF RFC 9190 (2022-02-01)THIS DOC [ACTIVE] [LATEST VERSION]
Normative Reference(s)
- IETF RFC 2119 [Active*]
- RFC3748 — RFC3748 EXTERNAL
- RFC5216 — RFC5216 EXTERNAL
- IETF RFC 5280 [Active, Amended]
- RFC5705 — RFC5705 EXTERNAL
- RFC6066 — RFC6066 EXTERNAL
- RFC6960 — RFC6960 EXTERNAL
- RFC7542 — RFC7542 EXTERNAL
- RFC8174 — RFC8174 EXTERNAL
- IETF RFC 8446 [Active]
Bibliographic Reference(s)
- 10.1109-IEEESTD.2016.7786995 — IEEE-802.11 EXTERNAL
- 10.1109-IEEESTD.2018.8585421 — IEEE-802.1AE EXTERNAL
- 10.1109-IEEESTD.2020.9018454 — IEEE-802.1X EXTERNAL
- 3GPP.TS-33.501.202201 — TS.33.501 EXTERNAL
- IETF.draft-ietf-emu-tls-eap-types-04 — I-D.ietf-emu-tls-eap-types EXTERNAL
- IETF RFC 8446 [Active]
- IETF.draft-ietf-tls-ticketrequests-07 — I-D.ietf-tls-ticketrequests EXTERNAL
- MFA.MulteFire.r1.1.2019 — MulteFire EXTERNAL
- MS.PEAP.20210625 — PEAP EXTERNAL
- RFC1661 — RFC1661 EXTERNAL
- IETF RFC 2246 [Superseded]
- RFC2560 — RFC2560 EXTERNAL
- RFC2865 — RFC2865 EXTERNAL
- IETF RFC 3280 [Superseded]
- RFC4137 — RFC4137 EXTERNAL
- RFC4282 — RFC4282 EXTERNAL
- IETF RFC 4346 [Superseded]
- RFC4851 — RFC4851 EXTERNAL
- RFC5077 — RFC5077 EXTERNAL
- RFC5191 — RFC5191 EXTERNAL
- IETF RFC 5246 [Superseded]
- RFC5247 — RFC5247 EXTERNAL
- RFC5281 — RFC5281 EXTERNAL
- RFC6125 — RFC6125 EXTERNAL
- RFC6733 — RFC6733 EXTERNAL
- RFC7170 — RFC7170 EXTERNAL
- RFC7406 — RFC7406 EXTERNAL
- RFC7457 — RFC7457 EXTERNAL
- RFC7525 — RFC7525 EXTERNAL
- RFC7593 — RFC7593 EXTERNAL
- RFC8126 — RFC8126 EXTERNAL
- RFC8447 — RFC8447 EXTERNAL
- RFC8996 — RFC8996 EXTERNAL
- RFC9155 — RFC9155 EXTERNAL
- RFC9191 — RFC9191 EXTERNAL
Source Data (JSON)
Full registry record with provenance metadata. Open directly: /api/doc/RFC9190.json
Reference Tree
Explore all references and references to this document, as a navigable tree.
Open Reference TreeReference this Doc
Plain text (ISO 690 compliant)
Preview:
IETF RFC 9190, EAP-TLS 1.3: Using the Extensible Authentication Protocol with TLS 1.3. Available at https://doi.org/10.17487/RFC9190
Snippet:
IETF RFC 9190, EAP-TLS 1.3: Using the Extensible Authentication Protocol with TLS 1.3. Available at https://doi.org/10.17487/RFC9190
HTML (ISO 690 compliant)
Preview:
IETF RFC 9190, EAP-TLS 1.3: Using the Extensible Authentication Protocol with TLS 1.3. Available at https://doi.org/10.17487/RFC9190
Snippet:
<span class="citation"><cite>IETF RFC 9190</cite>, EAP-TLS 1.3: Using the Extensible Authentication Protocol with TLS 1.3. Available at <a href="https://doi.org/10.17487/RFC9190" target="_blank" rel="noopener">https://doi.org/10.17487/RFC9190</a></span>
SMPTE's HTML Pub
Preview:
IETF RFC 9190, EAP-TLS 1.3: Using the Extensible Authentication Protocol with TLS 1.3
doi: 10.17487/RFC9190
url: https://doi.org/10.17487/RFC9190
doi: 10.17487/RFC9190
url: https://doi.org/10.17487/RFC9190
Snippet:
<li> <cite id="bib-rfc9190">IETF RFC 9190</cite>, EAP-TLS 1.3: Using the Extensible Authentication Protocol with TLS 1.3 <span class="doi">10.17487/RFC9190</span> </li>
Referenced By
- IETF RFC 9678 [Active*]