Skip to main content

Appendix E. Overview of Security Properties

This appendix provides an overview of the security properties provided by TLS 1.3.

E.1. Handshake​

Security properties of the TLS 1.3 handshake protocol.

E.2. Record Layer​

Security properties of the record layer protection.

E.3. Traffic Analysis​

Considerations regarding traffic analysis resistance.

E.4. Side-Channel Attacks​

Discussion of side-channel attack considerations.

E.5. Replay Attacks on 0-RTT​

Analysis of replay attack scenarios for 0-RTT data.

E.6. PSK Identity Exposure​

Considerations for PSK identity privacy.

E.7. Sharing PSKs​

Security implications of PSK sharing.

E.8. Attacks on Static RSA​

Discussion of attacks prevented by removing static RSA.


Complete Security Analysis: For the complete security properties analysis and threat model discussion, please refer to Appendix E of RFC 8446.