<?xml version='1.0' encoding='UTF-8'?>

<reference anchor='I-D.brusilovsky-pak'>
<front>
<title>Password-Authenticated Diffie-Hellman Exchange (PAK)</title>

<author initials='I' surname='Faynberg' fullname='Igor Faynberg'>
    <organization />
</author>

<author initials='S' surname='Patel' fullname='Sarvar Patel'>
    <organization />
</author>

<author initials='Z' surname='Zeltsan' fullname='Zachary Zeltsan'>
    <organization />
</author>

<author initials='A' surname='Brusilovsky' fullname='Alec Brusilovsky'>
    <organization />
</author>

<date month='April' day='10' year='2009' />

<abstract><t>This document proposes to add mutual authentication, based on human-memorizable password, to the basic unauthenticated Diffie-Hellman key exchange. The proposed algorithm is called Password-authenticated Key exchange (PAK). PAK allows two parties to authenticate themselves while performing the Diffie-Hellman exchange.  The protocol is secure against all passive and active attacks. In particular, it does not allow either type of attackers to obtain any information that would enable an off-line dictionary attack on the password. PAK provides Forward Secrecy.</t></abstract>

</front>

<seriesInfo name='Internet-Draft' value='draft-brusilovsky-pak-10' />
<format type='TXT'
        target='http://www.ietf.org/internet-drafts/draft-brusilovsky-pak-10.txt' />
</reference>

