rfc9588v2.txt   rfc9588.txt 
Internet Engineering Task Force (IETF) N. McCallum Internet Engineering Task Force (IETF) N. McCallum
Request for Comments: 9588 S. Sorce Request for Comments: 9588 S. Sorce
Category: Standards Track R. Harwood Category: Standards Track R. Harwood
ISSN: 2070-1721 Red Hat, Inc. ISSN: 2070-1721 Red Hat, Inc.
G. Hudson G. Hudson
MIT MIT
June 2024 August 2024
Kerberos Simple Password-Authenticated Key Exchange (SPAKE) Pre- Kerberos Simple Password-Authenticated Key Exchange (SPAKE) Pre-
authentication authentication
Abstract Abstract
This document defines a new pre-authentication mechanism for the This document defines a new pre-authentication mechanism for the
Kerberos protocol. The mechanism uses a password-authenticated key Kerberos protocol. The mechanism uses a password-authenticated key
exchange (PAKE) to prevent brute-force password attacks, and it may exchange (PAKE) to prevent brute-force password attacks, and it may
incorporate a second factor. incorporate a second factor.
 End of changes. 1 change blocks. 
1 lines changed or deleted 1 lines changed or added

This html diff was produced by rfcdiff 1.48.