%% You should probably cite draft-mglt-lurk-tls12 instead of this I-D. @techreport{cairns-tls-session-key-interface-01, number = {draft-cairns-tls-session-key-interface-01}, type = {Internet-Draft}, institution = {Internet Engineering Task Force}, publisher = {Internet Engineering Task Force}, note = {Work in Progress}, url = {https://datatracker.ietf.org/doc/draft-cairns-tls-session-key-interface/01/}, author = {Kelsey Cairns and John Preuß Mattsson and Robert Skog and Daniel Migault}, title = {{Session Key Interface (SKI) for TLS and DTLS}}, pagetotal = 24, year = 2015, month = oct, day = 19, abstract = {This document describes a session key interface that can be used for TLS and DTLS. The Heartbleed attack has clearly illustrated the security problems with storing private keys in the memory of the TLS server. Hardware Security Modules (HSM) offer better protection but are inflexible, especially as more (D)TLS servers are running on virtualized servers in data centers.}, }