These pages document the use of cryptography on the Internet, in the form of links to IETF RFCs (Request For Comments) and Internet Drafts.

HMAC-based Extract-and-Expand Key Derivation Function (HKDF)

Current Internet Drafts

draft-zorn-emu-team-02.txt The Tunneled Extensible Authentication Method (TEAM), Standards Track, March 8, 2011.

draft-turner-additional-methods-4kis-08.txt Additional Methods for Generating Subject Key Identifiers and Subject Key Identifier Semantics Extension, Informational, July 9, 2012.

draft-sheffer-ipsecme-hush-02.txt HUSH: Using HUmanly memorable SHared secrets with IKEv2, Informational, March 9, 2011.

draft-maino-lisp-sec-00.txt LISP-Security (LISP-SEC), Experimental, March 4, 2011.

draft-josefsson-scrypt-kdf-01.txt The scrypt Password-Based Key Derivation Function, Informational, September 24, 2012.

draft-ietf-urnbis-rfc3188bis-nbn-urn-04.txt Using National Bibliography Numbers as Uniform Resource Names, Standards Track, April 25, 2013.

draft-ietf-trill-rbridge-bfd-07.txt TRILL (Transparent Interconnetion of Lots of Links): Bidirectional Forwarding Detection (BFD) Support, Proposed Standard, TRILL Working Group, March 2012.

draft-ietf-trill-esadi-01.txt TRILL (Transparent Interconnection of Lots of Links): The ESADI (End Station Address Distribution Information) Protocol, Proposed Standard, TRILL Working Group, March 2012.

draft-ietf-p2psip-base-23.txt REsource LOcation And Discovery (RELOAD) Base Protocol, Standards Track, The P2PSIP Working Group, November 05, 2012.

draft-ietf-ospf-auth-trailer-ospfv3-11.txt Supporting Authentication Trailer for OSPFv3, Standards Track, OSPF Working Group, 2011.

draft-ietf-mptcp-multiaddressed-12.txt TCP Extensions for Multipath Operation with Multiple Addresses, Experimental, October 22, 2012.

draft-ietf-lisp-sec-04.txt LISP-Security (LISP-SEC), Experimental, October 12, 2012.

draft-ietf-lisp-ms-16.txt LISP Map Server Interface, Experimental, September 5, 2012.

draft-ietf-lisp-24.txt Locator/ID Separation Protocol (LISP), Experimental, November 13, 2012.

draft-ietf-krb-wg-pkinit-alg-agility-07.txt PKINIT Algorithm Agility, Standards Track, Kerberos Working Group, October 22, 2012.

draft-ietf-hip-rfc5201-bis-09.txt Host Identity Protocol Version 2 (HIPv2), Standards Track, July 16, 2012.

draft-ietf-dnsext-ecdsa-07.txt Elliptic Curve DSA for DNSSEC, Standards Track, February 29, 2012.

draft-ietf-dane-protocol-23.txt The DNS-Based Authentication of Named Entities (DANE) Transport Layer Security (TLS) Protocol: TLSA, Standards Track, June 14, 2012.

draft-ietf-bfd-hmac-sha-02.txt Authenticating BFD using HMAC-SHA-2 procedures, Standards Track, October 19, 2012.

draft-hoffman-schneier-4270bis-01.txt Attacks on Cryptographic Hashes in Internet Protocols, Informational, May 11, 2013.

draft-herzog-withmac-keywrap-02.txt The With-MAC key-wrapping algorithm for Cryptographic Message Syntax, Standards Track, August 2012.

draft-harkins-ipsecme-spsk-auth-08.txt Secure PSK Authentication for IKE, Experimental, March 26, 2012.

draft-gutmann-cms-hmac-enc-05.txt Using MAC-authenticated Encryption in the Cryptographic Message Syntax (CMS), Standards Track, S/MIME Working Group, June 22, 2011.

draft-eastlake-sha2b-07.txt US Secure Hash Algorithms (SHA and SHA based HMAC and HKDF), Informational, 1b710b35131c471b.

draft-eastlake-fnv-04.txt The FNV Non-Cryptographic Hash Algorithm, Informational, September 2001.

draft-eastlake-additional-xmlsec-uris-03.txt Additional XML Security Uniform Resource Identifiers (URIs), Proposed Standard, 200009xmldsigenvelopedsignature.

draft-dbider-sha2-mac-for-ssh-06.txt SHA-2 Data Integrity Verification for the Secure Shell (SSH) Transport Layer Protocol, Standards Track, November 4, 2012.

draft-bhatia-bfd-hmac-sha-00.txt Authenticating BFD using HMAC-SHA-2 procedures, Standards Track, October 9, 2011.

draft-bellovin-hpw-01.txt Hashed Password Exchange, Standards Track, March 11, 2012.

RFCs

RFC 6698 The DNS-Based Authentication of Named Entities (DANE) Transport Layer Security (TLS) Protocol: TLSA, Standards Track, 2012.

RFC 6668 SHA-2 Data Integrity Verification for the Secure Shell (SSH) Transport Layer Protocol, Standards Track, July 2012.

RFC 6617 Secure Pre-Shared Key (PSK) Authentication for the Internet Key Exchange Protocol (IKE), Experimental, June 2012.

RFC 6605 Elliptic Curve Digital Signature Algorithm (DSA) for DNSSEC, Standards Track, 2012.

RFC 6506 Supporting Authentication Trailer for OSPFv3, Standards Track, 2012.

RFC 6476 Using Message Authentication Code (MAC) Encryption in the Cryptographic Message Syntax (CMS), Standards Track, S/MIME Working Group, January 2012.

RFC 6234 US Secure Hash Algorithms (SHA and SHA-based HMAC and HKDF), Informational, May 2011.

RFC 6189 ZRTP: Media Path Key Agreement for Unicast Secure RTP, Informational, 2011.

RFC 6124 An EAP Authentication Method Based on the Encrypted Key Exchange (EKE) Protocol, Informational, 2011.

RFC 5931 Extensible Authentication Protocol (EAP) Authentication Using Only a Password, Informational, 2010.

RFC 5869 HMAC-based Extract-and-Expand Key Derivation Function (HKDF), Informational, 2010.

Expired Internet Drafts

draft-zimmermann-avt-zrtp-22.txt ZRTP: Media Path Key Agreement for Unicast Secure RTP, Informational, June 17, 2010.

draft-sheffer-emu-eap-eke-09.txt An EAP Authentication Method Based on the EKE Protocol, Informational, October 10, 2010.

draft-moskowitz-hip-rfc5201-bis-02.txt Host Identity Protocol, Standards Track, July 1, 2010.

draft-krawczyk-hkdf-00.txt HMAC-based Extract-and-Expand Key Derivation Function (HKDF), Informational, June 17, 2009.

Creative Commons License
This work is licensed under a Creative Commons Attribution 3.0 Unported License.