@techreport{ietf-emu-bootstrapped-tls-11, number = {draft-ietf-emu-bootstrapped-tls-11}, type = {Internet-Draft}, institution = {Internet Engineering Task Force}, publisher = {Internet Engineering Task Force}, note = {Work in Progress}, url = {https://datatracker.ietf.org/doc/draft-ietf-emu-bootstrapped-tls/11/}, author = {Owen Friel and Dan Harkins}, title = {{Bootstrapped TLS Authentication with Proof of Knowledge (TLS-POK)}}, pagetotal = 16, year = 2025, month = oct, day = 1, abstract = {This document defines a mechanism that enables a bootstrapping device to establish trust and mutually authenticate against a TLS server. Bootstrapping devices have a public/private key pair, and this mechanism enables a TLS server to prove to the device that it knows the public key, and the device to prove to the TLS server that it knows the private key. The mechanism leverages existing Device Provisioning Protocol (DPP) and TLS standards and can be used in an Extensible Authentication Protocol (EAP) exchange with an EAP server.}, }