Secure Pre-Shared Key Authentication for the Internet Key Exchange Protocol
RFC 6617, “Secure Pre-Shared Key Authentication for the Internet Key Exchange Protocol”, is an Experimental document published in June 2012 by D. Harkins. The canonical text is published by the RFC Editor.
Abstract
This memo describes a secure pre-shared key (PSK) authentication method for the Internet Key Exchange Protocol (IKE). It is resistant to dictionary attack and retains security even when used with weak pre-shared keys. This document defines an Experimental Protocol for the Internet community.
What “Experimental” means
Describes a specification that is part of a research or development effort, published so the community can gain experience with it.
The canonical text of RFC 6617 is hosted at rfc-editor.org. Available in TXT,HTML.
- RFC 6616 A Simple Authentication and Security Layer and Generic Security Service Application Program Interface Mechanism for OpenID
- RFC 6618 Mobile IPv6 Security Framework Using Transport Layer Security for Communication between the Mobile Node and Home Agent
- RFC 6615 Definitions of Managed Objects for IP Flow Information Export
- RFC 6619 Scalable Operation of Address Translators with Per-Interface Bindings
- RFC 6614 Transport Layer Security Encryption for RADIUS
- RFC 6620 FCFS SAVI: First-Come, First-Served Source Address Validation Improvement for Locally Assigned IPv6 Addresses
- RFC 6613 RADIUS over TCP
- RFC 6621 Simplified Multicast Forwarding