Name: draft-funk-tls-inner-application-extension-00
Title: TLS Inner Application Extension (TLS/IA)
State: Active
Authors: Paul Funk
Group: Individual Submissions (none)
Date: 2004-10-18
This document defines a new TLS extension called "Inner Application". When
TLS is used with the Inner Application extension (TLS/IA), additional
messages are exchanged during the TLS handshake, each of which is an
encrypted sequence of Attribute- Value-Pairs (AVPs) from the
RADIUS/Diameter namespace. Hence, the AVPs defined in RADIUS and Diameter
have the same meaning in TLS/AI; that is, each attribute code point refers
to the same logical attribute in any of these protocols. Arbitrary
applications include EAP or other forms of user authentication, client
integrity checking, provisioning of additional tunnels, and the like. Use
of the RADIUS/Diameter namespace provides natural compatibility between
TLS/IA applications and widely deployed AAA infrastructures.
|
|
|