[noise] Handshake pattern rules

Trevor Perrin trevp at trevp.net
Sun Jan 10 22:10:59 PST 2016


Hi Alex,

See section 6.1, "Pattern validity":

https://github.com/trevp/noise/blob/master/noise.md

Trevor



On Sun, Jan 10, 2016 at 6:30 PM, Alex <alex at centromere.net> wrote:
> On Sat, 9 Jan 2016 18:46:40 +0100
> "Jason A. Donenfeld" <Jason at zx2c4.com> wrote:
>
>> The reason is that the ephemeral keys act as random salts for
>> subsequent encryptions. If this isn't in place, catastrophic key reuse
>> will occur.
>
> Could you clarify? What is the specific rule governing the order in
> which DH operations should take place?
>
> --
> Alex
> _______________________________________________
> Noise mailing list
> Noise at moderncrypto.org
> https://moderncrypto.org/mailman/listinfo/noise


More information about the Noise mailing list