%% You should probably cite rfc9932 instead of this I-D. @techreport{halen-fedae-02, number = {draft-halen-fedae-02}, type = {Internet-Draft}, institution = {Internet Engineering Task Force}, publisher = {Internet Engineering Task Force}, note = {Work in Progress}, url = {https://datatracker.ietf.org/doc/draft-halen-fedae/02/}, author = {Jakob Schlyter and Stefan Halén}, title = {{Mutually Authenticating TLS in the context of Federations}}, pagetotal = 33, year = 2025, month = jul, day = 30, abstract = {This informational independent submission to the RFC series describes a means to use TLS 1.3 to perform machine-to-machine mutual authentication within federations. This memo is not a standard. It does not modify the TLS protocol in any way, nor does it require changes to common TLS libraries. TLS is specified and standardized by the IETF's TLS working group. The framework enables interoperable trust management for federated machine-to-machine communication. It introduces a centrally managed trust anchor and a controlled metadata publication process, ensuring that only authorized members are identifiable within the federation. These mechanisms support unambiguous entity identification and reduce the risk of impersonation, promoting secure and policy-aligned interaction across organizational boundaries.}, }