{
  "number": 7804,
  "title": "Salted Challenge Response HTTP Authentication Mechanism",
  "authors": [
    "A. Melnikov"
  ],
  "published": "2016-03",
  "status": "Experimental",
  "stream": "IETF",
  "area": "sec",
  "working_group": "httpauth",
  "pages": 18,
  "formats": [
    "TXT",
    "HTML"
  ],
  "abstract": "This specification describes a family of HTTP authentication mechanisms called the Salted Challenge Response Authentication Mechanism (SCRAM), which provides a more robust authentication mechanism than a plaintext password protected by Transport Layer Security (TLS) and avoids the deployment obstacles presented by earlier TLS-protected challenge response authentication mechanisms.",
  "keywords": [
    "HTTPAUTH",
    "HTTP",
    "SASL",
    "SCRAM",
    "GS2",
    "GSSAPI",
    "GSS-API"
  ],
  "draft": "draft-ietf-httpauth-scram-auth-15",
  "doi": "10.17487/RFC7804",
  "errata_url": "https://www.rfc-editor.org/errata/rfc7804",
  "urls": {
    "html": "https://rfc.dk/rfc7804/",
    "text": "https://rfc.dk/rfc7804.txt",
    "rfc_editor": "https://www.rfc-editor.org/rfc/rfc7804",
    "datatracker": "https://datatracker.ietf.org/doc/rfc7804/"
  },
  "text_modified": "2016-03-09T19:00:28Z"
}
