RFC 2289: A One-Time Password System
In plain English — editorial summary, not part of the RFC
This document describes a one-time password authentication system (OTP). The system provides authentication for system access (login) and other applications requiring authentication that is secure against passive attacks based on replaying captured reusable passwords. [STANDARDS-TRACK]
Document record
- Document ID
- RFC2289
- Published
- February 1998
- Authors
- N. Haller; C. Metz; P. Nesser; M. Straw
- Status
- INTERNET STANDARD
- Stream
- IETF
- Area
- sec
- Pages
- 25
- Also known as
- STD61
- Obsoletes:
- RFC 1938
Topics
Related documents
Ranked automatically by shared keywords, IETF area and stream — not by editorial selection.
- RFC 5209Network Endpoint Assessment (NEA): Overview and RequirementsCurrent
June 2008
- RFC 6030Portable Symmetric Key Container (PSKC)Current
October 2010
- RFC 8471The Token Binding Protocol Version 1.0Current
October 2018
- RFC 8472Transport Layer Security (TLS) Extension for Token Binding Protocol NegotiationCurrent
October 2018
- RFC 8473Token Binding over HTTPCurrent
October 2018
- RFC 4793The EAP Protected One-Time Password Protocol (EAP-POTP)Current
February 2007
- RFC 6238TOTP: Time-Based One-Time Password AlgorithmCurrent
May 2011
- RFC 8470Using Early Data in HTTPCurrent
September 2018
Also filed under
About this page
The document record above — title, authors, date, status, stream, area, relationships, DOI and errata — is imported verbatim from the public RFC Editor index. The “in plain English” section is editorial: written by The metasystema editorial team, not part of the RFC. Where the two differ, the RFC text governs.
Last checked against the RFC Editor index on . RFCs are never revised after publication; changes are issued as new documents.
Data sources · Editorial policy · Report a correction · What is an RFC?