[noise] non replayable XK/KK?

Justin Cormack justin at specialbusservice.com
Sun Jan 28 02:11:58 PST 2018


On 28 January 2018 at 00:07, Trevor Perrin <trevp at trevp.net> wrote:
> Definitely would be a good weekend project to try to figure out some
> options here, totally encourage you (or anyone) to go for it.

Will look at this. Intuitively this may be most useful for where there is
a pre-message, so there are parts of the handshake that can be done
in effect by either party. So one choice is initiator vs responder using
that shared key, so the NKdefer is switching from initiator to responder
using it. For the KK case this would potentially allow two deferals.
But maybe there are other useful deferral cases too.

Justin


More information about the Noise mailing list