{
  "number": 5931,
  "title": "Extensible Authentication Protocol (EAP) Authentication Using Only a Password",
  "authors": [
    "D. Harkins",
    "G. Zorn"
  ],
  "published": "2010-08",
  "status": "Informational",
  "stream": "IETF",
  "pages": 40,
  "formats": [
    "TXT",
    "HTML"
  ],
  "abstract": "This memo describes an Extensible Authentication Protocol (EAP) method, EAP-pwd, which uses a shared password for authentication. The password may be a low-entropy one and may be drawn from some set of possible passwords, like a dictionary, which is available to an attacker. The underlying key exchange is resistant to active attack, passive attack, and dictionary attack. This document is not an Internet Standards Track specification; it is published for informational purposes.",
  "keywords": [
    "Password Authenticated Key Exchange",
    "Dictionary Attack",
    "Authentication EAP"
  ],
  "draft": "draft-harkins-emu-eap-pwd-14",
  "doi": "10.17487/RFC5931",
  "errata_url": "https://www.rfc-editor.org/errata/rfc5931",
  "updated_by": [
    "RFC8146"
  ],
  "urls": {
    "html": "https://rfc.dk/rfc5931/",
    "text": "https://rfc.dk/rfc5931.txt",
    "rfc_editor": "https://www.rfc-editor.org/rfc/rfc5931",
    "datatracker": "https://datatracker.ietf.org/doc/rfc5931/"
  },
  "text_modified": "2010-08-10T16:07:14Z"
}
