[noise] BLAKE2X as KDF

Brian Smith brian at briansmith.org
Mon Dec 26 16:32:56 PST 2016


Brian Smith <brian at briansmith.org> wrote:
> One option that might address the above concerns would be to
> parameterize the key derivation function not as HKDF(hash) but as
> Extract-then-Expand(mac). This is actually how HKDF is defined in [1],

[1] https://eprint.iacr.org/2010/264.pdf. See also
http://webee.technion.ac.il/~hugo/kdf/.

Cheers,
Brian
-- 
https://briansmith.org/


More information about the Noise mailing list