Skip to content
This repository was archived by the owner on Apr 18, 2026. It is now read-only.
This repository was archived by the owner on Apr 18, 2026. It is now read-only.

Improve the document in detail #2

Description

@hedong0411

Dear teachers
I am a follower of this project. I have a problem recently. I read the chapter of Key Derivation , but I don't quite understand how to generate secret keys for a psp stream. Could you please tell me the detail of initial handshaking ?

Activity

  1. insanum commented on Sep 28, 2022

    @insanum

    The shared key generation via the KDF is documented and straight forward. I think what you might be asking is how to get that shared secret key generated on the receiver back to the sender. Likely, this is a job for TLS borrowing its handshake. This is what QUIC does and implementations hook into the handshake function callback mechanisms found in TLS libraries.

  2. hlrichardson commented on Sep 28, 2022

    @hlrichardson
    Contributor

    If we ignore the details of key exchange and just assume an out-of-band channel for communication between the sender and receiver, the steps would be:

    1. Sender requests a new derived key from receiver.
    2. Receiver picks a new SPI value and uses it to generate a derived key from the master key.
    3. Receiver sends SPI and derived key to sender, which the sender can use to produce PSP-encapsulated packets.
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type

    Projects

    No projects

      Milestone

      No milestone

      Relationships

      None yet

      Development

      No branches or pull requests

      Issue actions