MLchartDataset catalogue

Authenticated protected channel

Term · Cybersecurity · MLC-T-CYB-000320

1. An encrypted communication channel that uses approved cryptography in which the connection initiator (client) has authenticated the recipient (server). Authenticated protected channels are encrypted to provide confidentiality and protection against active intermediaries and are frequently used in the user authentication process. Transport Layer Security (TLS) and Datagram Transport Layer Security (DTLS) [RFC 9325] are examples of authenticated protected channels in which the certificate presented by the recipient is verified by the initiator. Unless otherwise specified, authenticated protected channels do not require the server to authenticate the client. Authentication of the server is often accomplished through a certificate chain that leads to a trusted root rather than individually with each server.

2. An encrypted communication channel that uses approved cryptography where the connection initiator (client) has authenticated the recipient (server).

3. An encrypted communication channel that uses approved cryptography where the connection initiator (client) has authenticated the recipient (server). Authenticated protected channels provide confidentiality and MitM protection and are frequently used in the user authentication process. Transport Layer Security (TLS) [BCP 195] is an example of an authenticated protected channel where the certificate presented by the recipient is verified by the initiator. Unless otherwise specified, authenticated protected channels do not require the server to authenticate the client. Authentication of the server is often accomplished through a certificate chain leading to a trusted root rather than individually with each server.

4. An encrypted channel that uses approved cryptography where the connection initiator (client) has authenticated the recipient (server).

Table 1. Record
IdentifierMLC-T-CYB-000320
FieldCybersecurity
ReferencesNIST SP 800-63-4; NIST SP 800-63A-4; CNSSI 4009-2022 from NIST SP 800-63-3 (adapted); NIST SP 800-63-3 [Superseded]; NIST SP 1800-12b; NIST CSRC Glossary
Record as JSON
{
  "id": "MLC-T-CYB-000320",
  "term": "Authenticated protected channel",
  "field": "Cybersecurity",
  "definition": "1. An encrypted communication channel that uses approved cryptography in which the connection initiator (client) has authenticated the recipient (server). Authenticated protected channels are encrypted to provide confidentiality and protection against active intermediaries and are frequently used in the user authentication process. Transport Layer Security (TLS) and Datagram Transport Layer Security (DTLS) [RFC 9325] are examples of authenticated protected channels in which the certificate presented by the recipient is verified by the initiator. Unless otherwise specified, authenticated protected channels do not require the server to authenticate the client. Authentication of the server is often accomplished through a certificate chain that leads to a trusted root rather than individually with each server.\n\n2. An encrypted communication channel that uses approved cryptography where the connection initiator (client) has authenticated the recipient (server).\n\n3. An encrypted communication channel that uses approved cryptography where the connection initiator (client) has authenticated the recipient (server). Authenticated protected channels provide confidentiality and MitM protection and are frequently used in the user authentication process. Transport Layer Security (TLS) [BCP 195] is an example of an authenticated protected channel where the certificate presented by the recipient is verified by the initiator. Unless otherwise specified, authenticated protected channels do not require the server to authenticate the client. Authentication of the server is often accomplished through a certificate chain leading to a trusted root rather than individually with each server.\n\n4. An encrypted channel that uses approved cryptography where the connection initiator (client) has authenticated the recipient (server).",
  "references": [
    "NIST SP 800-63-4; NIST SP 800-63A-4",
    "CNSSI 4009-2022 from NIST SP 800-63-3 (adapted)",
    "NIST SP 800-63-3 [Superseded]",
    "NIST SP 1800-12b",
    "NIST CSRC Glossary"
  ],
  "url": "https://mlchart.com/terminology/cybersecurity/authenticated-protected-channel/"
}

Record 318 of 4,669 in Cybersecurity terminology (MLC-0102). Request the full dataset.