%% You should probably cite rfc8164 instead of this I-D. @techreport{ietf-httpbis-http2-encryption-11, number = {draft-ietf-httpbis-http2-encryption-11}, type = {Internet-Draft}, institution = {Internet Engineering Task Force}, publisher = {Internet Engineering Task Force}, note = {Work in Progress}, url = {https://datatracker.ietf.org/doc/draft-ietf-httpbis-http2-encryption/11/}, author = {Mark Nottingham and Martin Thomson}, title = {{Opportunistic Security for HTTP/2}}, pagetotal = 10, year = 2017, month = mar, day = 17, abstract = {This document describes how "http" URIs can be accessed using Transport Layer Security (TLS) and HTTP/2 to mitigate pervasive monitoring attacks. This mechanism not a replacement for "https" URIs; it is vulnerable to active attacks.}, }