[messaging] Prekey reuse

N A 2.7182 at mailbox.org
Tue Sep 8 11:20:59 PDT 2015


Dear mailing list,

I read in [1] that TextSecure uses prekeys only once:

    "Since the server never hands out the same prekey twice
    (and the client would never accept the same prekey twice),
    we are able to provide forward secrecy in a fully
    asynchronous environment." [1]

There is however a last-resort key which is potentially handed out
multiple times. Could someone please explain to me how forward secrecy is
in danger when prekeys are reused? And why would this not be a problem
with the last-resort prekey? Are there any other problems with prekey
reuse?

Many thanks!

---
[1] https://whispersystems.org/blog/asynchronous-security/


More information about the Messaging mailing list