Skip to main content

Trust is non-negotiable
draft-jackson-tls-trust-is-nonnegotiable-00

Document Type Expired Internet-Draft (individual)
Expired & archived
Author Dennis Jackson
Last updated 2025-06-23 (Latest revision 2024-12-20)
RFC stream (None)
Intended RFC status (None)
Formats
Stream Stream state (No stream defined)
Consensus boilerplate Unknown
RFC Editor Note (None)
IESG IESG state Expired
Telechat date (None)
Responsible AD (None)
Send notices to (None)

This Internet-Draft is no longer active. A copy of the expired Internet-Draft is available in these formats:

Abstract

This document considers proposals to enable the negotiation of trust anchors in TLS. It makes three basic arguments: that trust negotiation is not helpful in addressing the problems it claims to address, that trust negotiation instead comes with material harms to the critical trust infrastructure of the Internet, and that the proposed mechanisms for deploying trust negotiation are unworkable. This draft goes on to discuss simpler and more effective solutions to these problems.

Authors

Dennis Jackson

(Note: The e-mail addresses provided for the authors of this Internet-Draft may no longer be valid.)