<?xml version="1.0" encoding="UTF-8"?>
<reference anchor="I-D.dpa-tls-dpa" target="https://datatracker.ietf.org/doc/html/draft-dpa-tls-dpa-00">
   <front>
      <title>TLS-DPA: An Identity-Bound Security Protocol for Traditional, Overlay, and Zero-Port Transports</title>
      <author initials="B. A." surname="Fisher" fullname="Benjamin Anthony Fisher">
         <organization>DPA R&amp;D Ltd (https://www.dpa-cloud.co.uk)</organization>
      </author>
      <date month="January" day="5" year="2026" />
      <abstract>
	 <t>   TLS-DPA is an experimental, identity-bound security protocol inspired
   by the design of TLS 1.3 ( [RFC8446] ).  It is intended to operate
   consistently across environments where conventional IP address and
   port semantics are weak, unstable, or intentionally absent, including
   zero-port transports such as UZP ( [UZP] ).  TLS-DPA generalises the
   handshake so it is not tied to server-side listeners, binds
   authentication to Service Identities rather than network coordinates,
   reduces metadata exposure to intermediaries (including rendezvous
   nodes in UZP fabrics), provides a unified hybrid-KEM post-quantum
   transition model ( [NIST-PQC] ), and supports session continuity
   across overlay path changes (e.g., QUIC Connection IDs; [RFC9000] ).

	 </t>
      </abstract>
   </front>
   <seriesInfo name="Internet-Draft" value="draft-dpa-tls-dpa-00" />
   
</reference>
