PACE
PACE
( < password authenticated connection establishment,
"paroolautentimisega ühenduse loomine")
olemus
protokoll krüpteeritud kanali loomiseks
kiipkaardi ja kaardilugeja vahel (BSI, 2007), põhineb
lühikestel paroolidel (enamasti 6-kohalised PIN-koodid),
mille pikkus sõltub dokumendi tüübist ja kaardilugeja tüübist;
seansivõtmete tugevus ei sõltu parooli tugevusest
= a protocol for creating an encrypted channel between a smart card and a card reader
ülevaateid
https://www.bsi.bund.de/SharedDocs/Downloads/DE/BSI/ElekAusweise/Keesing_10_09_Introducing_the_PACE_solution_pdf.pdf?__blob=publicationFile
https://second.wiki/wiki/password_authenticated_connection_establishment
https://www.icao.int/security/mrtd/downloads/technical%20reports/technical%20report.pdf
https://en.wikipedia.org/wiki/Supplemental_access_control
standardid
https://tools.ietf.org/html/rfc6631
https://tools.ietf.org/html/draft-kuegler-ipsecme-pace-ikev2-03
turvalisus
https://eprint.iacr.org/2013/223.pdf
https://www.commoncriteriaportal.org/files/epfiles/st_idcard_pace32_v0.43.pdf
https://eprint.iacr.org/2009/624.pdf