RFC 5931 · INFORMATIONAL · 2010

Extensible Authentication Protocol Authentication Using Only a Password

Overview

RFC 5931, “Extensible Authentication Protocol Authentication Using Only a Password”, is an Informational document published in August 2010 by D. Harkins, G. Zorn. It has since been updated by RFC 8146. The canonical text is published by the RFC Editor.

Abstract

This memo describes an Extensible Authentication Protocol (EAP) method, EAP-pwd, which uses a shared password for authentication. The password may be a low-entropy one and may be drawn from some set of possible passwords, like a dictionary, which is available to an attacker. The underlying key exchange is resistant to active attack, passive attack, and dictionary attack. This document is not an Internet Standards Track specification; it is published for informational purposes.

Abstract as published in the RFC, via rfc-editor.org.

What “Informational” means

Published for the general information of the community. It does not define an IETF standard and carries no standards-track status.

Read this RFC

The canonical text of RFC 5931 is hosted at rfc-editor.org. Available in TXT,HTML.

Relationships to other RFCs
Updated by
RFC 8146
Other RFCs from 2010

Who Is Online

In total there are 107 users online: 0 registered, 97 guests and 10 bots.

Most users ever online was 5,555 on 17 Jul 2026, 3:23 am.

Bots: AhrefsBot Applebot Baiduspider Bingbot Googlebot Majestic Other Bot Other Crawler PetalBot SemrushBot

Users active in the past 15 minutes. Total registered members: 372