[noise] New branch: hkdf

Jason A. Donenfeld Jason at zx2c4.com
Mon Oct 12 14:51:26 PDT 2015


On Mon, Oct 12, 2015 at 11:34 PM, Stephen Touset <stephen at squareup.com>
wrote:

> I see Jason is using it this way for his own purposes


Not quite yet, actually. I'm still uncertain the safest way to actually do
that (per the other thread I started). Can I just replace HKDF with Blake2b
wholesale, and split the 64byte output in half? Or do I have to stick with
the HKDF construction, but am allowed to replace the HMAC steps with
Blake2b steps? Hopefully it's the former.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://moderncrypto.org/mail-archive/noise/attachments/20151012/2e03176c/attachment.html>


More information about the Noise mailing list