@techreport{paasch-mptcp-tls-authentication-00, number = {draft-paasch-mptcp-tls-authentication-00}, type = {Internet-Draft}, institution = {Internet Engineering Task Force}, publisher = {Internet Engineering Task Force}, note = {Work in Progress}, url = {https://datatracker.ietf.org/doc/draft-paasch-mptcp-tls-authentication/00/}, author = {Christoph Paasch and Alan Ford}, title = {{TLS Authentication for MPTCP}}, pagetotal = 5, year = 2016, month = may, day = 27, abstract = {Multipath TCP (MPTCP), described in {[}4{]}, is an extension to TCP to provide the ability to simultaneously use multiple paths between peers. draft-paasch-mptcp-application-authentication specifies "application layer authentication" for Multipath TCP, an alternatively negotiated keying mechanism for MPTCP. This allows keying material to be sourced from an application layer protocol in order to secure MP\_JOIN handshakes. This document explains how to use the proposed application-layer authentication extension with TLS {[}6{]}, in order to leverage securely exchanged keys for MPTCP security, whilst simultaneously freeing the MPTCP token to be used as a channel for additional information.}, }