@techreport{ietf-tls-trust-anchor-ids-02, number = {draft-ietf-tls-trust-anchor-ids-02}, type = {Internet-Draft}, institution = {Internet Engineering Task Force}, publisher = {Internet Engineering Task Force}, note = {Work in Progress}, url = {https://datatracker.ietf.org/doc/draft-ietf-tls-trust-anchor-ids/02/}, author = {Bob Beck and David Benjamin and Devon O'Brien and Kyle Nekritz}, title = {{TLS Trust Anchor Identifiers}}, pagetotal = 29, year = 2025, month = sep, day = 15, abstract = {This document defines the TLS Trust Anchors extension, a mechanism for relying parties to convey trusted certification authorities. It describes individual certification authorities more succinctly than the TLS Certificate Authorities extension. Additionally, to support TLS clients with many trusted certification authorities, it supports a mode where servers describe their available certification paths and the client selects from them. Servers may describe this during connection setup, or in DNS for lower latency.}, }