RFC 4492: Elliptic Curve Cryptography (ECC) Cipher Suites for Transport Layer Security (TLS)
This RFC has been replaced. Do not implement against it for new work — it was formally obsoleted by RFC 8422.
Current document in this lineage: RFC 6066 — Transport Layer Security (TLS) Extensions: Extension Definitions; RFC 9846 — The Transport Layer Security (TLS) Protocol Version 1.3
In plain English — editorial summary, not part of the RFC
This document describes new key exchange algorithms based on Elliptic Curve Cryptography (ECC) for the Transport Layer Security (TLS) protocol. In particular, it specifies the use of Elliptic Curve Diffie-Hellman (ECDH) key agreement in a TLS handshake and the use of Elliptic Curve Digital Signature Algorithm (ECDSA) as a new authentication mechanism. This memo provides information for the Internet community.
Document record
- Document ID
- RFC4492
- Published
- May 2006
- Authors
- S. Blake-Wilson; N. Bolyard; V. Gupta; C. Hawk; B. Moeller
- Status
- INFORMATIONAL
- Stream
- IETF
- Area
- sec
- Pages
- 35
- Also known as
- —
- Obsoleted by:
- RFC 8422
Topics
Standards lineage
This document is one revision in a chain of 15 RFCs, each formally replacing the one before it.
- RFC 2246 (1999)
- RFC 3268 (2002)
- RFC 3546 (2003)
- RFC 4346 (2006)
- RFC 4366 (2006)
- RFC 4492 (2006)
- RFC 4507 (2006)
- RFC 5077 (2008)
- RFC 5246 (2008)
- RFC 6066 (2011)
- RFC 6961 (2013)
- RFC 7627 (2015)
- RFC 8422 (2018)
- RFC 8446 (2018)
- RFC 9846 (2026) ✓
Read the full history of The Transport Layer Security (TLS) Protocol Version 1.3 →
Referenced by
4 later RFCs formally update or obsolete part of this document.
- RFC 5246The Transport Layer Security (TLS) Protocol Version 1.2Obsoleted
August 2008
- RFC 7027Elliptic Curve Cryptography (ECC) Brainpool Curves for Transport Layer Security (TLS)Current
October 2013
- RFC 7919Negotiated Finite Field Diffie-Hellman Ephemeral Parameters for Transport Layer Security (TLS)Current
August 2016
- RFC 8422Elliptic Curve Cryptography (ECC) Cipher Suites for Transport Layer Security (TLS) Versions 1.2 and EarlierObsoleted
August 2018
Related documents
Ranked automatically by shared keywords, IETF area and stream — not by editorial selection.
- RFC 5349Elliptic Curve Cryptography (ECC) Support for Public Key Cryptography for Initial Authentication in Kerberos (PKINIT)Current
September 2008
- RFC 9053CBOR Object Signing and Encryption (COSE): Initial AlgorithmsUpdated
August 2022
- RFC 9142Key Exchange (KEX) Method Updates and Recommendations for Secure Shell (SSH)Current
January 2022
- RFC 6161Elliptic Curve Algorithms for Cryptographic Message Syntax (CMS) Encrypted Key Package Content TypeCurrent
April 2011
- RFC 6162Elliptic Curve Algorithms for Cryptographic Message Syntax (CMS) Asymmetric Key Package Content TypeCurrent
April 2011
- RFC 4050Using the Elliptic Curve Signature Algorithm (ECDSA) for XML Digital SignaturesCurrent
April 2005
- RFC 5754Using SHA2 Algorithms with Cryptographic Message SyntaxCurrent
January 2010
- RFC 5758Internet X.509 Public Key Infrastructure: Additional Algorithms and Identifiers for DSA and ECDSACurrent
January 2010
Also filed under
About this page
The document record above — title, authors, date, status, stream, area, relationships, DOI and errata — is imported verbatim from the public RFC Editor index. The “in plain English” section is editorial: written by The metasystema editorial team, not part of the RFC. Where the two differ, the RFC text governs.
Last checked against the RFC Editor index on . RFCs are never revised after publication; changes are issued as new documents.
Data sources · Editorial policy · Report a correction · What is an RFC?