The PT-TLS (RFC 6876) clients carol and dave set up a connection each to the policy decision point (PDP) alice. carol uses password-based SASL PLAIN client authentication during the PT-TLS negotiation phase and dave uses certificate-based TLS client authentication during the TLS setup phase.

During the ensuing PT-TLS data transport phase the OS and SWID IMC/IMV pairs loaded by the PT-TLS clients and PDP, respectively, exchange PA-TNC (RFC 5792) messages embedded in PB-TNC (RFC 5793) batches. The SWID IMC on carol is requested to deliver a concise SWID Tag ID Inventory whereas dave must send a full SWID Tag Inventory.