%% You should probably cite rfc5801 instead of this I-D. @techreport{ietf-sasl-gs2-20, number = {draft-ietf-sasl-gs2-20}, type = {Internet-Draft}, institution = {Internet Engineering Task Force}, publisher = {Internet Engineering Task Force}, note = {Work in Progress}, url = {https://datatracker.ietf.org/doc/draft-ietf-sasl-gs2/20/}, author = {Simon Josefsson and Nicolás Williams}, title = {{Using Generic Security Service Application Program Interface (GSS-API) Mechanisms in Simple Authentication and Security Layer (SASL): The GS2 Mechanism Family}}, pagetotal = 26, year = 2010, month = jan, day = 11, abstract = {This document describes how to use a Generic Security Service Application Program Interface (GSS-API) mechanism in the Simple Authentication and Security Layer (SASL) framework. This is done by defining a new SASL mechanism family, called GS2. This mechanism family offers a number of improvements over the previous "SASL/ GSSAPI" mechanism: it is more general, uses fewer messages for the authentication phase in some cases, and supports negotiable use of channel binding. Only GSS-API mechanisms that support channel binding and mutual authentication are supported. {[}STANDARDS-TRACK{]}}, }