rfc9761v2.txt | rfc9761.txt | |||
---|---|---|---|---|
Internet Engineering Task Force (IETF) T. Reddy.K | Internet Engineering Task Force (IETF) T. Reddy.K | |||
Request for Comments: 9761 Nokia | Request for Comments: 9761 Nokia | |||
Category: Standards Track D. Wing | Category: Standards Track D. Wing | |||
ISSN: 2070-1721 Citrix | ISSN: 2070-1721 Citrix | |||
B. Anderson | B. Anderson | |||
Cisco | Cisco | |||
March 2025 | April 2025 | |||
Manufacturer Usage Description (MUD) for TLS and DTLS Profiles for | Manufacturer Usage Description (MUD) for TLS and DTLS Profiles for | |||
Internet of Things (IoT) Devices | Internet of Things (IoT) Devices | |||
Abstract | Abstract | |||
This memo extends the Manufacturer Usage Description (MUD) | This memo extends the Manufacturer Usage Description (MUD) | |||
specification to allow manufacturers to define TLS and DTLS profile | specification to allow manufacturers to define TLS and DTLS profile | |||
parameters. This allows a network security service to identify | parameters. This allows a network security service to identify | |||
unexpected (D)TLS usage, which can indicate the presence of | unexpected (D)TLS usage, which can indicate the presence of | |||
skipping to change at line 1430 ¶ | skipping to change at line 1430 ¶ | |||
should be defined: | should be defined: | |||
"enum": Replicates the label from the registry. | "enum": Replicates the label from the registry. | |||
"value": Contains the IANA-assigned value corresponding to the | "value": Contains the IANA-assigned value corresponding to the | |||
"tls-version" or "dtls-version". | "tls-version" or "dtls-version". | |||
"description": Replicates the description from the registry. | "description": Replicates the description from the registry. | |||
"reference": RFC YYYY: <Title of the RFC>, where YYYY is the RFC | "reference": RFC YYYY: <Title of the RFC>, where YYYY is the RFC | |||
that added the "tls-version" or "dtls-version" | that added the "tls-version" or "dtls-version". | |||
When a (D)TLS parameter is added to the "ACL (D)TLS Parameters" | When a (D)TLS parameter is added to the "ACL (D)TLS Parameters" | |||
registry, a new "type" statement must be added to the iana-tls- | registry, a new "type" statement must be added to the iana-tls- | |||
profile YANG module. The following "type" statement, and | profile YANG module. The following "type" statement, and | |||
substatements thereof, should be defined: | substatements thereof, should be defined: | |||
"derived type": Replicates the parameter name from the registry. | "derived type": Replicates the parameter name from the registry. | |||
"built-in type": Contains the built-in YANG type. | "built-in type": Contains the built-in YANG type. | |||
End of changes. 2 change blocks. | ||||
2 lines changed or deleted | 2 lines changed or added | |||
This html diff was produced by rfcdiff 1.48. |