It is designed to resist specific vulnerabilities like Key-Compromise Impersonation (KCI) and provides Perfect Forward Secrecy (PFS) when configured correctly. Legacy and Impact
Unlike protocols that use digital signatures for every session, HMQV provides "implicit" authentication, meaning only the intended recipient can actually derive the correct shared secret. HMQV: A High-Performance Secure Diffie-Hellman ...
It maintains the high efficiency of the original MQV protocol, requiring only slightly more computation than a standard unauthenticated Diffie-Hellman exchange. It is designed to resist specific vulnerabilities like