STARTTLS

E6787

STARTTLS is a protocol command used to upgrade an existing unencrypted connection to a secure TLS-encrypted one, commonly in email and other text-based communication protocols.

All labels observed (6)

How this entity was disambiguated

Statements (48)

Predicate Object
instanceOf email security mechanism
protocol command
alternativeTo using a separate port for implicit TLS
category email security
transport layer security
commandType extension command
definedFor SMTP
definedIn RFC 3207
effect switches communication from plaintext to encrypted within same TCP session
enables confidentiality
integrity
opportunistic encryption
server authentication
follows initial plaintext protocol negotiation
fullName Start Transport Layer Security
imapCommandKeyword STARTTLS
introducedInYear 2002
layer application layer
operatesOn existing plaintext connection
pop3CommandKeyword STLS
precedes TLS handshake
purpose upgrade an existing plaintext connection to a TLS-encrypted connection
relatedConcept SMTPS
implicit TLS
opportunistic TLS
requires TLS handshake after command acceptance
support from both client and server
securityProperty does not guarantee encryption if peers do not support TLS
vulnerable to downgrade attacks if not enforced
smtpCommandKeyword STARTTLS
standardizedBy IETF
status widely deployed in email infrastructure
usedInProtocol ACAP
FTP
IMAP
IRC
LDAP
NNTP
POP3
SMTP
XMPP
usedOnPort 110
143
25
5222
587
usesProtocol SSL
TLS

How these facts were elicited

Referenced by (15)

Full triples — surface form annotated when it differs from this entity's canonical label.

TLS usedByProtocol STARTTLS
X.509 certificate usedInProtocol LDAP over TLS
subject linked to: X.509 certificates
linked to: STARTTLS
TLS 1.0 commonlyUsedWith SMTP over TLS
linked to: STARTTLS
SMTP AUTH relatedTo STARTTLS
RFC 3207 specifies STARTTLS extension for SMTP
linked to: STARTTLS
RFC 3207 defines SMTP service extension keyword STARTTLS
linked to: STARTTLS
Thunderbird supportsEncryption STARTTLS
subject linked to: Thunderbird email client
SNI usedIn STARTTLS
RFC 2487 defines STARTTLS
RFC 2487 defines SMTP STARTTLS extension
linked to: STARTTLS
RFC 2487 keyword STARTTLS
RFC 2487 definesCommand STARTTLS