RFC 7804 · EXPERIMENTAL · 2016

Salted Challenge Response HTTP Authentication Mechanism

Overview

RFC 7804, “Salted Challenge Response HTTP Authentication Mechanism”, is an Experimental document published in March 2016 by A. Melnikov. The canonical text is published by the RFC Editor.

Abstract

This specification describes a family of HTTP authentication mechanisms called the Salted Challenge Response Authentication Mechanism (SCRAM), which provides a more robust authentication mechanism than a plaintext password protected by Transport Layer Security (TLS) and avoids the deployment obstacles presented by earlier TLS-protected challenge response authentication mechanisms.

Abstract as published in the RFC, via rfc-editor.org.

What “Experimental” means

Describes a specification that is part of a research or development effort, published so the community can gain experience with it.

Read this RFC

The canonical text of RFC 7804 is hosted at rfc-editor.org. Available in TXT,HTML.

Other RFCs from 2016

Who Is Online

In total there are 37 users online: 0 registered, 33 guests and 4 bots.

Most users ever online was 1,226 on 13 Jun 2026, 3:56 am.

Bots: Applebot Other Bot Other Crawler SemrushBot

Users active in the past 15 minutes. Total registered members: 354