Meaning
Encryption standards for connectionless transport protocols secure data packets against eavesdropping and tampering without establishing a permanent session. The datagram transport layer security protocol adapts transport layer security to run over user datagram protocol by resolving packet loss and reordering. It provides a secure channel that preserves the lightweight nature of datagram networks.
This protocol secures low power wide area networks without adding the overhead of a continuous transmission control protocol connection.
Session Protocol
Security associations must be established without a reliable transport stream. The datagram transport layer security protocol uses a handshake with a cookie exchange to prevent denial of service attacks. If a packet is lost during the handshake, the protocol relies on a retransmission timer to send the packet again.
This ensures that the security context is negotiated successfully even over unreliable wireless connections.
Replay Prevention
No security protocol is complete without protection against duplicate packets. The datagram transport layer security protocol includes a sliding window mechanism that tracks sequence numbers. Packets that arrive with duplicate sequence numbers are discarded immediately.
Message Fragmentation
Handling large cryptographic keys presents a challenge for network interfaces with small maximum transmission units. The datagram transport layer security protocol includes explicit fragmentation and reassembly fields within its handshake messages. This design allows the protocol to send large certificates and keys across networks with small frame sizes without relying on IP fragmentation.
It prevents the network drops that occur when routers discard fragmented packets.