%% You should probably cite draft-tiloca-tls-dos-handshake-02 instead of this revision. @techreport{tiloca-tls-dos-handshake-00, number = {draft-tiloca-tls-dos-handshake-00}, type = {Internet-Draft}, institution = {Internet Engineering Task Force}, publisher = {Internet Engineering Task Force}, note = {Work in Progress}, url = {https://datatracker.ietf.org/doc/draft-tiloca-tls-dos-handshake/00/}, author = {Marco Tiloca and Ludwig Seitz and Maarten Hoeve}, title = {{Extension for protecting (D)TLS handshakes against Denial of Service}}, pagetotal = 12, year = , month = , day = , abstract = {This document describes an extension for TLS and DTLS to protect the server from Denial of Service attacks against the handshake protocol. The extension includes a Message Authentication Code (MAC) over the ClientHello message, computed by the Client through key material obtained from a Trust Anchor entity. The server registered at the Trust Anchor derives the same key material and checks the MAC to determine whether continuing or aborting the handshake.}, }