{
  "number": 9588,
  "title": "Kerberos Simple Password-Authenticated Key Exchange (SPAKE) Pre-authentication",
  "authors": [
    "N. McCallum",
    "S. Sorce",
    "R. Harwood",
    "G. Hudson"
  ],
  "published": "2024-08",
  "status": "Proposed Standard",
  "stream": "IETF",
  "area": "sec",
  "working_group": "kitten",
  "pages": 33,
  "formats": [
    "HTML",
    "TXT",
    "PDF",
    "XML"
  ],
  "abstract": "This document defines a new pre-authentication mechanism for the Kerberos protocol. The mechanism uses a password-authenticated key exchange (PAKE) to prevent brute-force password attacks, and it may incorporate a second factor.",
  "draft": "draft-ietf-kitten-krb-spake-preauth-13",
  "doi": "10.17487/RFC9588",
  "urls": {
    "html": "https://rfc.dk/rfc9588/",
    "text": "https://rfc.dk/rfc9588.txt",
    "rfc_editor": "https://www.rfc-editor.org/rfc/rfc9588",
    "datatracker": "https://datatracker.ietf.org/doc/rfc9588/"
  },
  "text_modified": "2024-08-27T21:18:25.825661931Z"
}
