On Sat, Jul 4, 2015 at 7:24 PM, Jason A. Donenfeld <Jason at zx2c4.com> wrote: > This was omitted from the section, but can I assume I should also set the > nonce to zero when deriving a new session, since k changes? Yes, fixed. https://github.com/trevp/noise/blob/master/noise.md Trevor