[noise] Extension spec: Static-Static Pattern Modifiers

Justin Cormack justin at specialbusservice.com
Tue Nov 20 02:02:00 PST 2018


Looks good!

Planning to spend some time writing up signatures in a few weeks when
I have some time.

Justin

On Mon, 19 Nov 2018 at 02:31, Trevor Perrin <trevp at trevp.net> wrote:
>
> I wrote up the "ss" and "noss" modifiers Justin and I worked out a few
> months ago:
>
> https://github.com/noiseprotocol/noise_ss_spec/blob/master/output/noise_ss.pdf
> https://github.com/noiseprotocol/noise_ss_spec
>
> These give us more control over adding/removing static-static DH:  It
> can be added for more resilience against ephemeral-key compromise; or
> can be removed from patterns like IK if you don't want to spend a DH
> for these benefits of 0-RTT authentication and
> ephemeral-key-compromise resilience.
>
> Justin did most of the heavy lifting in figuring these out.  This
> follows his earlier spec, except:
>  * Omits one-way patterns with "noss", since X and K with noss
> basically degrade to N.
>  * Omits the description of how noss/ss interact with the spec's
> pattern-generation rules, since I think these are easy enough to
> understand as pattern transformations.
>
> Trevor
> _______________________________________________
> Noise mailing list
> Noise at moderncrypto.org
> https://moderncrypto.org/mailman/listinfo/noise


More information about the Noise mailing list