%% You should probably cite rfc7366 instead of this I-D. @techreport{ietf-tls-encrypt-then-mac-02, number = {draft-ietf-tls-encrypt-then-mac-02}, type = {Internet-Draft}, institution = {Internet Engineering Task Force}, publisher = {Internet Engineering Task Force}, note = {Work in Progress}, url = {https://datatracker.ietf.org/doc/draft-ietf-tls-encrypt-then-mac/02/}, author = {Peter Gutmann}, title = {{Encrypt-then-MAC for TLS and DTLS}}, pagetotal = 7, year = 2014, month = jun, day = 6, abstract = {This document describes a means of negotiating the use of the encrypt-then-MAC security mechanism in place of TLS'/DTLS' existing MAC-then-encrypt one, which has been the subject of a number of security vulnerabilities over a period of many years.}, }