Transport Layer Security Channel ID
   HOME

TheInfoList



OR:

Transport Layer Security Channel ID (TLS Channel ID, previously known as Transport Layer Security – Origin Bound Certificates TLS-OBC) is a draft RFC proposal
Transport Layer Security Transport Layer Security (TLS) is a cryptographic protocol designed to provide communications security over a computer network. The protocol is widely used in applications such as email, instant messaging, and voice over IP, but its use in securi ...
(TLS) extension that aims to increase TLS
security" \n\n\nsecurity.txt is a proposed standard for websites' security information that is meant to allow security researchers to easily report security vulnerabilities. The standard prescribes a text file called \"security.txt\" in the well known locat ...
by using certificates on both ends of the TLS connection. Notably, the client is permitted to dynamically create a local,
self-signed certificate In cryptography and computer security, self-signed certificates are public key certificates that are not issued by a certificate authority (CA). These self-signed certificates are easy to make and do not cost money. However, they do not provide any ...
that provides additional security. It can also protect users from the related domain cookie attack.


Token Binding

Token Binding is an evolution of the TLS Channel ID feature, and the IETF draft has Microsoft and Google as authors.


References


External links


TLS Channel ID IETF Draft

TLS-OBC for System Administrators
Transport Layer Security {{security-stub