HTTP Digest Access Authentication

GPTKB entity

Statements (50)
Predicate Object
gptkbp:instance_of gptkb:protocol
gptkbp:can_be_combined_with Other Authentication Methods
gptkbp:can_be_used_for gptkb:Amazon_Web_Services
gptkbp:can_be_used_with gptkb:SSL/_TLS
gptkbp:dependency User-Agent Behavior
gptkbp:developed_by gptkb:IETF
gptkbp:has_limitations Browser Support
https://www.w3.org/2000/01/rdf-schema#label HTTP Digest Access Authentication
gptkbp:improves Security over Basic Authentication
gptkbp:is_based_on Challenge-Response Authentication
gptkbp:is_common_in gptkb:OAuth_2.0
gptkbp:is_considered Legacy Authentication Method
gptkbp:is_defined_by gptkb:RFC_2617
Authentication Frameworks
gptkbp:is_effective_against Token-Based Authentication
gptkbp:is_implemented_in Web Servers
gptkbp:is_less_flexible_than gptkb:JWT
gptkbp:is_often_misconfigured_in Web Applications
gptkbp:is_often_used_in gptkb:HTTPS
Corporate Environments
Modern Web Development
gptkbp:is_part_of gptkb:HTTP/1.1
Web Security Standards
gptkbp:is_subject_to Configuration Issues
Implementation Variability
gptkbp:is_supported_by Browsers
gptkbp:is_used_for Intranet Applications
gptkbp:is_used_in HTTP Protocol
REST APIs
gptkbp:is_user_friendly gptkb:OAuth2
gptkbp:is_vulnerable_to Man-in-the-Middle Attacks
Replay Attacks
gptkbp:provides Integrity Protection
Challenge-Response Mechanism
gptkbp:requires User Credentials
Client-Side Support
Server-Side Storage of Nonce
gptkbp:security gptkb:Kerberos
gptkb:SAML
Basic Authentication
gptkbp:size Basic Authentication
gptkbp:specification gptkb:RFC_7616
gptkbp:suitable_for Enterprise Applications
Mobile Applications
Single Page Applications
Public APIs
gptkbp:supports Nonce Values
gptkbp:uses MD5 Hashing
gptkbp:bfsParent gptkb:RFC_7617
gptkbp:bfsLayer 7