PAX Design Goals Handheld devices in a wireless environment Minimal complexity in terms of computation, packet count, and infrastructure Bootstrap secure key derivation using a simple preshared secret (e.g. 4-digit PIN) Server-controlled key management Support for identity protection Provably secure |