RFC 9932
Mutually Authenticating TLS in the Context of Federations, April 2026
- File formats:

- Also available: XML file for editing
- Status:
- INFORMATIONAL
- Authors:
- S. Halén
J. Schlyter - Stream:
- INDEPENDENT
Cite this RFC: TXT | XML | BibTeX
DOI: https://doi.org/10.17487/RFC9932
Discuss this RFC: Send questions or comments to the mailing list [email protected]
Other actions: Submit Errata | Find IPR Disclosures from the IETF | View History of RFC 9932
Abstract
This Informational Independent Submission to the RFC Series describes a means to use TLS 1.3 to perform machine-to-machine mutual authentication within federations. This memo is not a standard. It does not modify the TLS protocol in any way, nor does it require changes to common TLS libraries. TLS is specified and standardized by the IETF's TLS Working Group.
The framework enables interoperable trust management for federated machine-to-machine communication. It introduces a centrally managed trust anchor and a controlled metadata publication process, ensuring that only authorized members are identifiable within the federation. These mechanisms support unambiguous entity identification and reduce the risk of impersonation, promoting secure and policy-aligned interaction across organizational boundaries.
For the definition of Status, see RFC 2026.
For the definition of Stream, see RFC 8729.