This table is a template for comparing the different password-authenticated key establishment schemes considered for inclusion into P1363.2.

This version is the basis for a discussion during the teleconference of December 11, 2002. 

 

Scheme

Pub. date

Augmented

Client load

Server load

Proofs, analysis

Assumptions

Limitations

Asserted Patents

Use

Other considerations

BPKAS

 

 

 

 

 

 

 

 

 

 

PAK

2000

No

2

2

Published

 

no server commit

Lucent

 

 

PPK

2000

No

2

2

Published

 

 

Lucent

 

 

SPEKE

1996

No

2

2

Posted

 

 

Phoenix

Yes

 

APKAS

 

 

 

 

 

 

 

 

 

 

AMP

2000

Yes

2

2

 

 

2-for-1

 

 

 

BSPEKE1

1997

Yes

4

4

 

 

 

Phoenix

 

 

BSPEKE2

1999

Yes

3

3

 

 

 

Phoenix

Yes

 

PAKX

2000

Yes

3

3

 

 

 

Lucent

 

 

SRP3

1997

Yes

3.2

2.2

 

 

2-for-1,
no client commit

Stanford

Yes

 

SRP4

2002

Yes

2.2

2.2

 

 

 

 

 

 

SRP5

2001

Yes

3.2

2.2

 

 

2-for-1,
no client commit

 

 

 

SRP6

2002

Yes

3.2

2.2

 

 

?

 

 

 

PKRS

 

 

 

 

 

 

 

 

 

 

KRS1

2000

N/A

 

 

 

   

Verisign

Yes

 

Notes: