%% You should probably cite rfc7366 instead of this I-D. @techreport{ietf-tls-encrypt-then-mac-01, number = {draft-ietf-tls-encrypt-then-mac-01}, type = {Internet-Draft}, institution = {Internet Engineering Task Force}, publisher = {Internet Engineering Task Force}, note = {Work in Progress}, url = {https://datatracker.ietf.org/doc/draft-ietf-tls-encrypt-then-mac/01/}, author = {Peter Gutmann}, title = {{Encrypt-then-MAC for TLS and DTLS}}, pagetotal = 8, year = 2014, month = may, day = 2, abstract = {This document describes a means of negotiating the use of the encrypt-then-MAC security mechanism in place of TLS'/DTLS' existing MAC-then-encrypt one, which has been the subject of a number of security vulnerabilities over a period of many years.}, }