{"draft":"draft-ietf-httpauth-mutual-11","doc_id":"RFC8120","title":"Mutual Authentication Protocol for HTTP","authors":["Y. Oiwa","H. Watanabe","H. Takagi","K. Maeda","T. Hayashi","Y. Ioku"],"format":["ASCII","HTML"],"page_count":"53","pub_status":"EXPERIMENTAL","status":"EXPERIMENTAL","source":"Hypertext Transfer Protocol Authentication","abstract":"This document specifies an authentication scheme for the Hypertext\r\nTransfer Protocol (HTTP) that is referred to as either the Mutual\r\nauthentication scheme or the Mutual authentication protocol. This\r\nscheme provides true mutual authentication between an HTTP client and\r\nan HTTP server using password-based authentication. Unlike the Basic\r\nand Digest authentication schemes, the Mutual authentication scheme\r\nspecified in this document assures the user that the server truly\r\nknows the user's encrypted password.","pub_date":"April 2017","keywords":["HTTP","authentication"],"obsoletes":[],"obsoleted_by":[],"updates":[],"updated_by":[],"see_also":[],"doi":"10.17487\/RFC8120","errata_url":null}