Public key in MIKEY (RFC 3830) MIKEY Public key mode requires initiator to have responder’s Public key (PKr) before sending the I_MESSAGE Initiator Responder I_MESSAGE = HDR, T, RAND, [IDi|CERTi], [IDr], {SP}, KEMAC, [CHASH], PKE, SIGNi ---> R_MESSAGE = [<---] HDR, T, [IDr], V PKE = E(PKr, env_key) KEMAC = E(encr_key, IDi || {TGK}) || MAC |