On Tue, Feb 16, 2016 at 12:33:56AM +0000, Robert Cragie wrote:
> The big assumption here is that SSL/TLS is used solely in browsers. That is
> not how it is being used in Thread, for example, and indeed in other
> similar technologies. In Thread, it is used for local device authentication
> and authorisation. These use cases clearly benefit from a PAKE, i.e.
> getting deriving a shared cryptographic from a weaker shared password.
So when looking at things that might use JPAKE, Thread was one of
the things that came up.  But if you then go look, it seems to be
using EC-JPAKE.


Kurt

_______________________________________________
TLS mailing list
TLS@ietf.org
https://www.ietf.org/mailman/listinfo/tls

Reply via email to