RFC 6238 on TOTP: Time-Based One-Time Password Algorithm

rfc-editor@rfc-editor.org Fri, 13 May 2011 23:46 UTC

Return-Path: <wwwrun@rfc-editor.org>
X-Original-To: ietf-announce@ietfa.amsl.com
Delivered-To: ietf-announce@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id E9DB4E08D8 for <ietf-announce@ietfa.amsl.com>; Fri, 13 May 2011 16:46:00 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -102.6
X-Spam-Level:
X-Spam-Status: No, score=-102.6 tagged_above=-999 required=5 tests=[BAYES_00=-2.599, NO_RELAYS=-0.001, USER_IN_WHITELIST=-100]
Received: from mail.ietf.org ([64.170.98.30]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 40fukqMsIsIB for <ietf-announce@ietfa.amsl.com>; Fri, 13 May 2011 16:46:00 -0700 (PDT)
Received: from rfc-editor.org (rfc-editor.org [IPv6:2001:1890:1112:1::2f]) by ietfa.amsl.com (Postfix) with ESMTP id 42384E0728 for <ietf-announce@ietf.org>; Fri, 13 May 2011 16:46:00 -0700 (PDT)
Received: by rfc-editor.org (Postfix, from userid 30) id 3E206E0781; Fri, 13 May 2011 16:46:00 -0700 (PDT)
To: ietf-announce@ietf.org, rfc-dist@rfc-editor.org
Subject: RFC 6238 on TOTP: Time-Based One-Time Password Algorithm
From: rfc-editor@rfc-editor.org
Message-Id: <20110513234600.3E206E0781@rfc-editor.org>
Date: Fri, 13 May 2011 16:46:00 -0700
Cc: rfc-editor@rfc-editor.org
X-BeenThere: ietf-announce@ietf.org
X-Mailman-Version: 2.1.12
Precedence: list
List-Id: "IETF announcement list. No discussions." <ietf-announce.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/ietf-announce>, <mailto:ietf-announce-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/ietf-announce>
List-Post: <mailto:ietf-announce@ietf.org>
List-Help: <mailto:ietf-announce-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/ietf-announce>, <mailto:ietf-announce-request@ietf.org?subject=subscribe>
X-List-Received-Date: Fri, 13 May 2011 23:46:01 -0000

A new Request for Comments is now available in online RFC libraries.

        
        RFC 6238

        Title:      TOTP: Time-Based One-Time Password Algorithm 
        Author:     D. M'Raihi, S. Machani,
                    M. Pei, J. Rydell
        Status:     Informational
        Stream:     IETF
        Date:       May 2011
        Mailbox:    davidietf@gmail.com, 
                    smachani@diversinet.com, 
                    Mingliang_Pei@symantec.com,  
                    johanietf@gmail.com
        Pages:      16
        Characters: 32174
        Updates/Obsoletes/SeeAlso:   None

        I-D Tag:    draft-mraihi-totp-timebased-08.txt

        URL:        http://www.rfc-editor.org/rfc/rfc6238.txt

This document describes an extension of the One-Time Password (OTP)
algorithm, namely the HMAC-based One-Time Password (HOTP) algorithm,
as defined in RFC 4226, to support the time-based moving factor.  The
HOTP algorithm specifies an event-based OTP algorithm, where the
moving factor is an event counter.  The present work bases the moving
factor on a time value.  A time-based variant of the OTP algorithm
provides short-lived OTP values, which are desirable for enhanced
security.

The proposed algorithm can be used across a wide range of network
applications, from remote Virtual Private Network (VPN) access and
Wi-Fi network logon to transaction-oriented Web applications.  The
authors believe that a common and shared algorithm will facilitate
adoption of two-factor authentication on the Internet by enabling
interoperability across commercial and open-source implementations.
This document is not an Internet Standards Track specification; it is
published for informational purposes.


INFORMATIONAL: This memo provides information for the Internet community.
It does not specify an Internet standard of any kind. Distribution of
this memo is unlimited.

This announcement is sent to the IETF-Announce and rfc-dist lists.
To subscribe or unsubscribe, see
  http://www.ietf.org/mailman/listinfo/ietf-announce
  http://mailman.rfc-editor.org/mailman/listinfo/rfc-dist

For searching the RFC series, see http://www.rfc-editor.org/rfcsearch.html.
For downloading RFCs, see http://www.rfc-editor.org/rfc.html.

Requests for special distribution should be addressed to either the
author of the RFC in question, or to rfc-editor@rfc-editor.org.  Unless
specifically noted otherwise on the RFC itself, all RFCs are for
unlimited distribution.


The RFC Editor Team
Association Management Solutions, LLC