[curves] PAKE use cases & requirements

Feng Hao feng.hao at newcastle.ac.uk
Fri Oct 17 06:14:39 PDT 2014

Hi Trevor,

>All Requirements
> - IPR free
> - security proof
> - efficient (in messages, computation)
> - simple
> - flexible to different curves
> - sidechannel resistant
> - no backdoors
> - small messages
> - non-augmented and augmented options
> - work with existing hashed passwords
> - low DoS potential
> - simultaneous initiate allowed

This looks good. I would suggest to change the third one to

 - efficient (in rounds, message, computation)

Then you don't need the last one, as the simultaneous initiation is related to the round efficiency.


More information about the Curves mailing list