commit 24e83693fadac07ac8eb3528e299c3a0bf688308
parent 646b7e2a1015bb1d7e8deea7276ce98d1eea9498
Author: Özgür Kesim <oec-taler@kesim.org>
Date: Sun, 13 Apr 2025 11:10:36 +0200
[dd:pq-refresh] correction in RefreshDerive
Diffstat:
1 file changed, 2 insertions(+), 2 deletions(-)
diff --git a/design-documents/062-pq-refresh.rst b/design-documents/062-pq-refresh.rst
@@ -47,12 +47,12 @@ derive the key material of a fresh coin from the old coin:
c2_s, C2_p = KeyGen(x)
b = Hash2(x)
m = Blind(C2_p, b, pkD)
- return (t, s, c2_s, C2_p, m)
+ return (s, c2_s, C2_p, m)
Key Changes to the existing RefreshDerive:
1. *Deterministic Signatures*: ``s`` proves ownership without DH
- 2. *Hash Chain*: ``x`` derived through hashing
+ 2. *Key derivation*: ``x`` derived through hashing of the signature
The hash functions ``Hash1x`` might be the same, but can be pair-wise
different. However, the hash function ``Hash2`` must be different from