A -> B: {{M}PKb, A}PKb
B -> A: {{M}Pka, B}Pka
Because of undecidability for the model
Encrypted fields are distinguishable
Principal identities in every encrypted field
No temporary secrets
No forwarding of encrypted fields
| Previous slide | Next slide | Back to first slide | View graphic version |