Document Action: 'TOTP: Time-based One-time Password Algorithm' to Informational RFC (draft-mraihi-totp-timebased-08.txt)

The IESG <iesg-secretary@ietf.org> Mon, 07 March 2011 18:34 UTC

Return-Path: <iesg-secretary@ietf.org>
X-Original-To: ietf-announce@core3.amsl.com
Delivered-To: ietf-announce@core3.amsl.com
Received: from localhost (localhost [127.0.0.1]) by core3.amsl.com (Postfix) with ESMTP id 756053A6819; Mon, 7 Mar 2011 10:34:33 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -102.553
X-Spam-Level:
X-Spam-Status: No, score=-102.553 tagged_above=-999 required=5 tests=[AWL=0.046, BAYES_00=-2.599, USER_IN_WHITELIST=-100]
Received: from mail.ietf.org ([64.170.98.32]) by localhost (core3.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id rsrsAQFEHeZ4; Mon, 7 Mar 2011 10:34:31 -0800 (PST)
Received: from [127.0.0.1] (localhost [127.0.0.1]) by core3.amsl.com (Postfix) with ESMTP id D28A23A6808; Mon, 7 Mar 2011 10:34:30 -0800 (PST)
Content-Type: text/plain; charset="us-ascii"
MIME-Version: 1.0
Content-Transfer-Encoding: 7bit
From: The IESG <iesg-secretary@ietf.org>
To: IETF-Announce <ietf-announce@ietf.org>
Subject: Document Action: 'TOTP: Time-based One-time Password Algorithm' to Informational RFC (draft-mraihi-totp-timebased-08.txt)
X-Test-IDTracker: no
X-IETF-IDTracker: 3.12
Message-ID: <20110307183430.31602.19219.idtracker@localhost>
Date: Mon, 07 Mar 2011 10:34:30 -0800
Cc: Internet Architecture Board <iab@iab.org>, RFC Editor <rfc-editor@rfc-editor.org>
X-BeenThere: ietf-announce@ietf.org
X-Mailman-Version: 2.1.9
Precedence: list
List-Id: "IETF announcement list. No discussions." <ietf-announce.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/listinfo/ietf-announce>, <mailto:ietf-announce-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/ietf-announce>
List-Post: <mailto:ietf-announce@ietf.org>
List-Help: <mailto:ietf-announce-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/ietf-announce>, <mailto:ietf-announce-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 07 Mar 2011 18:34:33 -0000

The IESG has approved the following document:
- 'TOTP: Time-based One-time Password Algorithm'
  (draft-mraihi-totp-timebased-08.txt) as an Informational RFC

This document has been reviewed in the IETF but is not the product of an
IETF Working Group.

The IESG contact person is Sean Turner.

A URL of this Internet Draft is:
http://datatracker.ietf.org/doc/draft-mraihi-totp-timebased/




Technical Summary

This document describes an extension of one-time password (OTP) 
algorithm, namely the HAMC-Based One-Time Password (HOTP) Algorithm as 
defined in RFC 4226, to support time-based moving factor. The HOTP 
algorithm specifies an event based OTP algorithm where the moving factor 
is an event counter. The present work bases the moving factor on a time 
value. A time-based variant of the OTP algorithm provides short-lived 
OTP values, which are desirable for enhanced security.

The authors believe that a common and shared algorithm will facilitate 
adoption of two-factor authentication on the Internet by enabling 
interoperability across commercial and open-source implementations.

Working Group Summary

This document was developed outside the IETF, namely in the OATH 
community. A number of OATH members participated in the IETF KEYPROV 
working group and brought this work forward to the IETF.

Document Quality

This document is an AD-sponsored submission and has enjoyed review 
within the OATH community. Implementations of the specification exist.

Personnel

Hannes Tschofenig <Hannes.Tschofenig@gmx.net> is the document shepherd 
for this document.
Sean Turner <turners@ieca.com> is the sponsoring Area Director.