<?xml version="1.0" encoding="UTF-8"?>
<reference anchor="I-D.ietf-dance-client-auth" target="https://datatracker.ietf.org/doc/html/draft-ietf-dance-client-auth-10">
   <front>
      <title>TLS Client Authentication via DANE TLSA records</title>
      <author initials="S." surname="Huque" fullname="Shumon Huque">
         <organization>Salesforce</organization>
      </author>
      <author initials="V." surname="Dukhovni" fullname="Viktor Dukhovni">
         <organization>OpenSSL Corporation</organization>
      </author>
      <date month="March" day="2" year="2026" />
      <abstract>
	 <t>   The DANE TLSA protocol describes how to publish Transport Layer
   Security (TLS) server certificates or public keys in the DNS.  This
   document updates RFC 6698 and RFC 7671.  It describes how to use the
   TLSA record to publish client certificates or public keys, and also
   the rules and considerations for using them with TLS.  In addition,
   it defines a new TLS extension, DANE CLient Identity, to convey the
   client&#x27;s domain name identity to the server.

	 </t>
      </abstract>
   </front>
   <seriesInfo name="Internet-Draft" value="draft-ietf-dance-client-auth-10" />
   
</reference>
