[noise] IK pattern: good or bad?

Jason A. Donenfeld Jason at zx2c4.com
Tue Dec 18 13:49:29 PST 2018


On Tue, Dec 18, 2018 at 9:53 PM Loup Vaillant David
<loup at loup-vaillant.fr> wrote:
> May I ask why you think so? While I'd never reach for IK *first*, it
> looks like it does have its use cases. What would you use in its stead
> for something like Wireguard, and why?

IK doesn't offer forward secrecy on the identity hiding property, in
exchange for a smaller state machine, less attack surface, and certain
stealth properties. It's certainly a trade-off, with legitimate and
interesting preferences on both sides.


More information about the Noise mailing list