Secure Password Ciphersuites for Transport Layer Security
RFC 8492, “Secure Password Ciphersuites for Transport Layer Security”, is an Informational document published in February 2019 by D. Harkins. The canonical text is published by the RFC Editor.
Abstract
This memo defines several new ciphersuites for the Transport Layer Security (TLS) protocol to support certificateless, secure authentication using only a simple, low-entropy password. The exchange is called "TLS-PWD". The ciphersuites are all based on an authentication and key exchange protocol, named "dragonfly", that is resistant to offline dictionary attacks.
What “Informational” means
Published for the general information of the community. It does not define an IETF standard and carries no standards-track status.
The canonical text of RFC 8492 is hosted at rfc-editor.org. Available in TXT,HTML.
- RFC 8490 DNS Stateful Operations
- RFC 8498 A P-Served-User Header Field Parameter for an Originating Call Diversion Session Case in the Session Initiation Protocol
- RFC 8499 DNS Terminology
- RFC 8500 IS-IS Routing with Reverse Metric
- RFC 8482 Providing Minimal-Sized Responses to DNS Queries That Have QTYPE=ANY
- RFC 8504 IPv6 Node Requirements
- RFC 8506 Diameter Credit-Control Application
- RFC 8508 IMAP REPLACE Extension