Date Published: October 2018
Comments Due: November 16, 2018 (public comment period is CLOSED)
Email Questions to:
sp80052-comments@nist.gov
Draft SP 800-52 Revision 2 provides guidance for selecting and configuring Transport Layer Security (TLS) protocol implementations that utilize NIST-recommended cryptographic algorithms and Federal Information Processing Standards (FIPS). This second draft extends the deadline by which agencies are urged to support TLS 1.3 to January 1, 2024. Moreover, it clarifies that TLS 1.3 is intended to coexist with TLS 1.2 rather than replace it. An appendix has also been added to discuss key exchange using RSA key transport and includes a list of cipher suites that may be used if a transition period is needed. The extensions guidance now clarifies which versions of TLS each extension applies to and provides guidance on the raw public keys extension.
System and Communications Protection
Publication:
Draft (2nd) SP 800-52 Rev. 2 (pdf)
Supplemental Material:
Comments received (pdf)
Document History:
11/15/17: SP 800-52 Rev. 2 (Draft)
10/15/18: SP 800-52 Rev. 2 (Draft)
08/29/19: SP 800-52 Rev. 2 (Final)
cryptography, general security & privacy, public key infrastructure
Technologies Applications