Dragonfly key exchange
E453435
Dragonfly key exchange is a password-authenticated key exchange (PAKE) protocol designed to provide secure mutual authentication and key establishment resistant to offline dictionary attacks.
Statements (44)
| Predicate | Object |
|---|---|
| instanceOf |
cryptographic protocol
ⓘ
key exchange protocol ⓘ password-authenticated key exchange protocol ⓘ |
| comparedTo |
EKE
ⓘ
J-PAKE NERFINISHED ⓘ SRP NERFINISHED ⓘ |
| hasAbbreviation | SAE NERFINISHED ⓘ |
| hasAlternativeName |
Dragonfly PAKE
NERFINISHED
ⓘ
Simultaneous Authentication of Equals NERFINISHED ⓘ |
| hasAuthor | Dan Harkins NERFINISHED ⓘ |
| hasComponent |
commit exchange
ⓘ
confirm exchange ⓘ shared secret derivation ⓘ |
| hasDesignGoal |
forward secrecy
ⓘ
mutual authentication ⓘ password-based key establishment ⓘ resistance to offline dictionary attacks ⓘ |
| hasLimitation |
requires strong password selection for best security
ⓘ
security depends on group parameter selection ⓘ |
| hasProperty |
based on Diffie–Hellman key exchange
ⓘ
does not reveal password to the peer ⓘ does not store password-equivalent data on the server ⓘ mutual authentication between peers ⓘ resistant to offline dictionary attacks ⓘ supports elliptic curve groups ⓘ supports finite field groups ⓘ |
| hasSecurityGoal |
prevention of offline password guessing
ⓘ
protection against active man-in-the-middle attacks ⓘ protection against passive eavesdropping ⓘ |
| hasThreatModel |
adversary capable of active network attacks
ⓘ
adversary with access to protocol transcripts ⓘ |
| hasUsageContext |
infrastructure-less networks
ⓘ
peer-to-peer authentication ⓘ wireless local area networks ⓘ |
| isDefinedIn | RFC 7664 NERFINISHED ⓘ |
| isStandardizedIn | IEEE 802.11 NERFINISHED ⓘ |
| isUsedFor |
Wi‑Fi network authentication
ⓘ
secure key establishment ⓘ |
| isUsedIn |
WPA3
NERFINISHED
ⓘ
WPA3-Personal NERFINISHED ⓘ Wi‑Fi Protected Access 3 NERFINISHED ⓘ |
| usesConcept | password-authenticated key exchange ⓘ |
| usesPrimitive |
elliptic curve cryptography
ⓘ
finite field Diffie–Hellman NERFINISHED ⓘ |
Referenced by (1)
Full triples — surface form annotated when it differs from this entity's canonical label.