%% You should probably cite draft-shin-tls-augpake-10 instead of this revision. @techreport{shin-tls-augpake-01, number = {draft-shin-tls-augpake-01}, type = {Internet-Draft}, institution = {Internet Engineering Task Force}, publisher = {Internet Engineering Task Force}, note = {Work in Progress}, url = {https://datatracker.ietf.org/doc/draft-shin-tls-augpake/01/}, author = {SeongHan Shin and Kazukuni Kobara}, title = {{Augmented Password-Authenticated Key Exchange for Transport Layer Security (TLS)}}, pagetotal = 19, year = 2013, month = sep, day = 4, abstract = {This document describes an efficient augmented password-authenticated key exchange (AugPAKE) protocol where a user remembers a low-entropy password and its verifier is registered in the intended server. In general, the user password is chosen from a small set of dictionary whose space is within the off-line dictionary attacks. The AugPAKE protocol described here is secure against passive attacks, active attacks and off-line dictionary attacks (on the obtained messages with passive/active attacks), and also provides resistance to server compromise (in the context of augmented PAKE security). Based on the AugPAKE protocol, this document also specifies a new password-only authentication handshake for Transport Layer Security (TLS) protocol.}, }