%% You should probably cite rfc9431 instead of this I-D. @techreport{ietf-ace-mqtt-tls-profile-17, number = {draft-ietf-ace-mqtt-tls-profile-17}, type = {Internet-Draft}, institution = {Internet Engineering Task Force}, publisher = {Internet Engineering Task Force}, note = {Work in Progress}, url = {https://datatracker.ietf.org/doc/draft-ietf-ace-mqtt-tls-profile/17/}, author = {Cigdem Sengul and Anthony Kirby}, title = {{Message Queuing Telemetry Transport (MQTT) and Transport Layer Security (TLS) Profile of Authentication and Authorization for Constrained Environments (ACE) Framework}}, pagetotal = 33, year = 2022, month = mar, day = 23, abstract = {This document specifies a profile for the Authentication and Authorization for Constrained Environments (ACE) framework to enable authorization in a publish-subscribe messaging system based on Message Queuing Telemetry Transport (MQTT). Proof-of-Possession keys, bound to OAuth 2.0 access tokens, are used to authenticate and authorize MQTT Clients. The protocol relies on TLS for confidentiality and MQTT server (Broker) authentication.}, }