ChaCha20 and Poly1305 for IETF protocols

Document Type Replaced Internet-Draft (cfrg RG)
Authors Yoav Nir  , Adam Langley 
Last updated 2014-07-23 (latest revision 2014-07-04)
Replaced by RFC 7539
Stream Internet Research Task Force (IRTF)
Intended RFC status Informational
Expired & archived
pdf htmlized (tools) htmlized bibtex
Stream IRTF state Replaced
Consensus Boilerplate Unknown
Document shepherd No shepherd assigned
IESG IESG state Replaced by draft-irtf-cfrg-chacha20-poly1305
Telechat date
Responsible AD (None)
Send notices to (None)

This Internet-Draft is no longer active. A copy of the expired Internet-Draft can be found at


This document defines the ChaCha20 stream cipher, as well as the use of the Poly1305 authenticator, both as stand-alone algorithms, and as a "combined mode", or Authenticated Encryption with Additional Data (AEAD) algorithm. This document does not introduce any new crypto, but is meant to serve as a stable reference and an implementation guide.


Yoav Nir (
Adam Langley (

(Note: The e-mail addresses provided for the authors of this Internet-Draft may no longer be valid.)