[prev in list] [next in list] [prev in thread] [next in thread]
List: ietf-announce
Subject: I-D Action: draft-krawczyk-cfrg-opaque-00.txt
From: internet-drafts () ietf ! org
Date: 2018-09-28 21:00:08
Message-ID: 153816840803.26504.11974428256144251095 () ietfa ! amsl ! com
[Download RAW message or body]
A New Internet-Draft is available from the on-line Internet-Drafts directories.
Title : The OPAQUE Asymmetric PAKE Protocol
Author : Hugo Krawczyk
Filename : draft-krawczyk-cfrg-opaque-00.txt
Pages : 17
Date : 2018-09-28
Abstract:
This draft describes the OPAQUE protocol, a secure asymmetric
password authenticated key exchange (aPAKE) that supports mutual
authentication in a client-server setting without any reliance on
PKI. OPAQUE is the first PKI-free aPAKE to accommodate secret salt
and therefore is the first to be secure against pre-computation
attacks upon server compromise. In contrast, prior aPAKE protocols
did not use salt and if they did, the salt was transmitted in the
clear from server to user allowing for the building of targeted pre-
computed dictionaries. OPAQUE security has been proven by Jarecki et
al. (Eurocrypt 2018) in a strong and universally composable formal
model of aPAKE security. In addition, the protocol provides forward
secrecy and the ability to hide the password from the server even
during password registration.
Strong security, good performance and an array of additional features
make OPAQUE a natural candidate for practical use and for adoption as
a standard. To this end, this draft presents several optimized
instantiations of OPAQUE and ways of integrating OPAQUE with TLS.
The IETF datatracker status page for this draft is:
https://datatracker.ietf.org/doc/draft-krawczyk-cfrg-opaque/
There are also htmlized versions available at:
https://tools.ietf.org/html/draft-krawczyk-cfrg-opaque-00
https://datatracker.ietf.org/doc/html/draft-krawczyk-cfrg-opaque-00
Please note that it may take a couple of minutes from the time of submission
until the htmlized version and diff are available at tools.ietf.org.
Internet-Drafts are also available by anonymous FTP at:
ftp://ftp.ietf.org/internet-drafts/
_______________________________________________
I-D-Announce mailing list
I-D-Announce@ietf.org
https://www.ietf.org/mailman/listinfo/i-d-announce
Internet-Draft directories: http://www.ietf.org/shadow.html
or ftp://ftp.ietf.org/ietf/1shadow-sites.txt
[prev in list] [next in list] [prev in thread] [next in thread]
Configure |
About |
News |
Add a list |
Sponsored by KoreLogic