Confirmed users
216
edits
(→Establish Control Channel: use TLS for ctrl channel) |
(→Requirement: add data integrity) |
||
Line 16: | Line 16: | ||
** device authentication: passcode verification + j-PAKE procedure | ** device authentication: passcode verification + j-PAKE procedure | ||
** data encryption: TLS for ctrl channel, DTLS for communication channel | ** data encryption: TLS for ctrl channel, DTLS for communication channel | ||
** data integrity: provide HMAC for each ctrl message (except for query) | |||
== Architecture == | == Architecture == |