9. Security Considerations (安全注意事项)
9. Security Considerations (安全注意事项)
9.1 Security Properties (安全属性)
- 9.1.1 Key-Compromise Impersonation (密钥泄露冒充)
- 9.1.2 Computational Analysis (计算分析)
- 9.1.3 Post-Quantum Security (后量子安全)
9.2 Security Requirements on a KEM Used within HPKE (HPKE 中使用的 KEM 的安全要求)
- 9.2.1 Encap/Decap Interface (Encap/Decap 接口)
- 9.2.2 AuthEncap/AuthDecap Interface (AuthEncap/AuthDecap 接口)
- 9.2.3 KEM Key Reuse (KEM 密钥重用)
9.3 Security Requirements on a KDF (KDF 的安全要求)
9.4 Security Requirements on an AEAD (AEAD 的安全要求)
9.5 Pre-Shared Key Recommendations (预共享密钥建议)
9.6 Domain Separation (域分离)
9.7 Application Embedding and Non-Goals (应用嵌入与非目标)
- 9.7.1 Message Order and Message Loss (消息顺序与消息丢失)
- 9.7.2 Downgrade Prevention (降级防护)
- 9.7.3 Replay Protection (重放保护)
- 9.7.4 Forward Secrecy (前向保密)
- 9.7.5 Bad Ephemeral Randomness (不良临时随机性)
- 9.7.6 Hiding Plaintext Length (隐藏明文长度)