IETF - RFC 9155
Deprecating MD5 and SHA-1 Signature Hashes in TLS 1.2 and DTLS 1.2
active, Most Current
Organization: | IETF |
Publication Date: | 1 December 2021 |
Status: | active |
Page Count: | 5 |
scope:
Abstract
The MD5 and SHA-1 hashing algorithms are increasingly vulnerable to attack, and this document deprecates their use in TLS 1.2 and DTLS 1.2 digital signatures. However, this document does not deprecate SHA-1 with Hashed Message Authentication Code (HMAC), as used in record protection. This document updates RFC 5246.
Document History

RFC 9155
December 1, 2021
Deprecating MD5 and SHA-1 Signature Hashes in TLS 1.2 and DTLS 1.2
Abstract
The MD5 and SHA-1 hashing algorithms are increasingly vulnerable to attack, and this document deprecates their use in TLS 1.2 and DTLS 1.2 digital signatures. However, this document does...