From mboxrd@z Thu Jan 1 00:00:00 1970 Delivery-date: Tue, 16 Jul 2024 09:45:34 -0700 Received: from mail-oa1-f58.google.com ([209.85.160.58]) by mail.fairlystable.org with esmtps (TLS1.3) tls TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256 (Exim 4.94.2) (envelope-from ) id 1sTlJ0-0001bt-Fo for bitcoindev@gnusha.org; Tue, 16 Jul 2024 09:45:34 -0700 Received: by mail-oa1-f58.google.com with SMTP id 586e51a60fabf-25e08ee43f6sf3763507fac.3 for ; Tue, 16 Jul 2024 09:45:34 -0700 (PDT) ARC-Seal: i=2; a=rsa-sha256; t=1721148328; cv=pass; d=google.com; s=arc-20160816; b=U+6mvuVXKt7viQJGZCwtdWeQc5LFQEcY53KaOneLBhirbgVErL4D1TZrX5wmLv1wPd g9nsI/NqiPod3tSuv0N4phtaIMTnnWbNjvdmsf6xN7tzS099XO0o7FTek0dJIjqWhsgh Fu4kST8U5zzM3TzYaLv1iueDlcBCYSPB+Pr5Slna9ZnxQRK58VssgYcQah2DTDhWx0Ay jp1UPUtMAI/B17iTE2cGR8w2emuU91mvWIDM/u1D5CsKaASDA0ihGftn48ddSZAiTyQn 9VCtpgOde0dJLqeg96+RCtrVGUq2NpcYeDx4fbKfrx4b3TP/PvoQQy8N9SkQIZzo8qUS TjYg== ARC-Message-Signature: i=2; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=arc-20160816; h=list-unsubscribe:list-subscribe:list-archive:list-help:list-post :list-id:mailing-list:precedence:message-id:references:in-reply-to :subject:cc:to:from:date:mime-version:sender:dkim-signature; bh=0ZHsk8r+jZ8vvv4A4qcaT9zXYpQab934B+qoeymaB5I=; fh=pCy7HCdNPZTjnZXvnWVHo0AhSq/kYRn1BUNcZdzjN6M=; b=hUTPsvRg3FuJ4b4bS+qSujzV739F2NEFpaS6qDDITtBzXAnxfx/TsmWtA+3eCBKFMi ZiVxTAFyfsgugo1R3m5D8ZxT+OgokedKrhwQsLCiVPzmoyOCzEoSETs3vQgAINZFfslS yY+9/rvX/JJ64x7y0geICwWqvKu2REp1/ti9xnmd7csjdkToU3T8mxx7Bq2Qdc7dsR66 w20uc+BgBV+sz++q0SG1coWACLMuk8fNNoy2SfYytsx1tzeCBVve/suQwBAaQ3RmFk8a Zf06GX6bFMrdC73muGauZhvFVWkbaEWAsiq+ezY/qhb/Tp8jxExSQCC/OnZ9mKT1apbr xpzQ==; darn=gnusha.org ARC-Authentication-Results: i=2; gmr-mx.google.com; spf=pass (google.com: domain of dave@dtrt.org designates 208.79.240.5 as permitted sender) smtp.mailfrom=dave@dtrt.org DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=googlegroups.com; s=20230601; t=1721148328; x=1721753128; darn=gnusha.org; h=list-unsubscribe:list-subscribe:list-archive:list-help:list-post :list-id:mailing-list:precedence:x-original-authentication-results :x-original-sender:message-id:references:in-reply-to:subject:cc:to :from:date:mime-version:sender:from:to:cc:subject:date:message-id :reply-to; bh=0ZHsk8r+jZ8vvv4A4qcaT9zXYpQab934B+qoeymaB5I=; b=aFw8YSEO4YW8/WOePJqj83a2ARYsZRKZw3FGhKp0n8FoqFYbi4JD42psvJfMxwb6uP UEtGp5a1cJOu93fGgjVw7bNbkb0foxzl0al8ArmSSEZym25/QROxafq5T9/7RB7WFYLa P2bUsg7UJ+Qv4XqMN8o+89Z1pAtZ8xsaRuo1qTrKImZ6HV1boGQfXTwxQsc8hF6edK34 zHWu0Ecukd50yIp6SiSbwxzJMKVHxp/oYV9m9Siei5iCnSyf/yphhZd1nVw1jgEqAV3I 3L8oFhxQIrP6f8ZSs8dwNs09UabtKbzfm6tr6mxcQNWCuy97PFP6v64emL81ux0nZsyN uapQ== X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20230601; t=1721148328; x=1721753128; h=list-unsubscribe:list-subscribe:list-archive:list-help:list-post :list-id:mailing-list:precedence:x-original-authentication-results :x-original-sender:message-id:references:in-reply-to:subject:cc:to :from:date:mime-version:x-beenthere:x-gm-message-state:sender:from :to:cc:subject:date:message-id:reply-to; bh=0ZHsk8r+jZ8vvv4A4qcaT9zXYpQab934B+qoeymaB5I=; b=Aec0RXl01nEszmJjZ255ggquFgfiKqnnKMgb3M5qM/o0S8TfU6Y+FCsFaltN34a5gG w30PTQxV1xO56RwbxdXqTY+QCXjHVQvSYbcYY6Z3g3C5vm8EO89ogFAMn1BR5patAInQ kJigrcQfOi6QsN8/J348qiJfOnVcsVH8E5REMM3gT1UkGW7V0o9UI78dXm60ZLHjx32Y ZOc6RKqR+nR8RrOjy2Z5TyfSBcPlHAeE2TyBimgjEI8eSGwHJWlkQu59DYbKPY2hYfI2 yWk0dk4GXi/+eHFH6sJUTbHdHhkoy3XOV0BeoVuIJ64f6jwPcB07X9N4hf0z0nhaLWD+ VKzw== Sender: bitcoindev@googlegroups.com X-Forwarded-Encrypted: i=2; AJvYcCXpS004VsdTg/Uy3Miyo61a4OhcMpAuCT9j5r7nwMku1H08qWq7JPUnV8uEPHfWxDCyh+pkgA63nL3scsIFRl/RKYSvk+o= X-Gm-Message-State: AOJu0YzuLHVOFnBpCU1IT/WYQFZFINgL1DjGhebM37cKA/QqGUtRSQFj 6GeONEJR3SOcJMRTxi8ooZytEb6zt8nFShC+3Ew0haY3Uw8m1Bmn X-Google-Smtp-Source: AGHT+IE865NCKt81PooRT5v904PjKo2EuBsOWepJx6HCcatLMycUrgnVIQqJIRjmU7ngKCZZtROQug== X-Received: by 2002:a05:6870:9686:b0:25d:f388:9777 with SMTP id 586e51a60fabf-260bde389a7mr2308032fac.34.1721148328177; Tue, 16 Jul 2024 09:45:28 -0700 (PDT) X-BeenThere: bitcoindev@googlegroups.com Received: by 2002:a05:6870:6589:b0:25e:160c:c90 with SMTP id 586e51a60fabf-2603ae9bd34ls174029fac.2.-pod-prod-08-us; Tue, 16 Jul 2024 09:45:26 -0700 (PDT) X-Received: by 2002:a05:6870:d207:b0:25e:c02c:264d with SMTP id 586e51a60fabf-260ba11accbmr121462fac.0.1721148326437; Tue, 16 Jul 2024 09:45:26 -0700 (PDT) Received: by 2002:a05:6808:3386:b0:3da:a27f:25ca with SMTP id 5614622812f47-3dacd96a5femsb6e; Tue, 16 Jul 2024 09:43:54 -0700 (PDT) X-Received: by 2002:a05:6830:378f:b0:708:d84d:f622 with SMTP id 46e09a7af769-708d99cd440mr3699457a34.26.1721148234278; Tue, 16 Jul 2024 09:43:54 -0700 (PDT) ARC-Seal: i=1; a=rsa-sha256; t=1721148234; cv=none; d=google.com; s=arc-20160816; b=CuHgPuoiC3//QZz5LEPyND005sj8cGaunOYR+7jg4IuPtWj9ifveGnG4KJNjlxtB+t d63WqOEmw9KCOaiGttKFn4UgNDxMfxS7XPZmm6Llqy4pjPZMOM4/df01MEL8oaSfDQaa XUIVRzLABXzoRYiG9azJP4ta0yITAWPJB0XDNcpabCLwfBxf3ilMS9treqB4Ap+05k8x 69o+VpHTK5lg/9KzrEF5l9BDfEfSbN9cBYl/Ra6B2Zko1/lYRlH0HUjzv4yIgLQWi28B d0lCnIiEURSIke6UvqXw8b2jy6GdMkmcEpf8IEhb9vg/H+1IBZ/V2dRzGAJhQl1fdhPn CU1w== ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=arc-20160816; h=content-transfer-encoding:message-id:references:in-reply-to:subject :cc:to:from:date:mime-version; bh=PkKtAwCMHCVAuaLx094ww7fBL9OaOYr+UgVGOvZlFSs=; fh=YKxGdJzyutdr0uqe+0rtPhewGC9B9g0J8KR7mG4EufI=; b=xXqyJFCC3yOshfwIebR2ugSPHMVCAn5UGzsPsm8Ec6ucaZgcc7fANXEzt5iVz0MEQ8 3OKcdDRqF1QoD3p7+3yr0hD2kFNpkDu4EXqOUtOjpen1c6UG+ZTc6TOjTNQ7fd8Fk7gj ZPP/Wtj77k+KsvEJfvA78FtAye4ixC8WPpbk+duuMZ548wO+dUk1lD+02D72I9GMFh68 wTjQNIvZsGpycW/gKqMttZVeEMZM4aFzidM44FcA6bnyfp+ZMSVUZErdts5ZPIDcGQEB dC6j0GnK/jgWjUlwcLVMVnCAfO66xdPex3RUd2LRJM+2p9VqdW5KmG/dpSN+hsC8DevN JH/Q==; dara=google.com ARC-Authentication-Results: i=1; gmr-mx.google.com; spf=pass (google.com: domain of dave@dtrt.org designates 208.79.240.5 as permitted sender) smtp.mailfrom=dave@dtrt.org Received: from smtpauth.rollernet.us (smtpauth.rollernet.us. [208.79.240.5]) by gmr-mx.google.com with ESMTPS id 46e09a7af769-708c0c80bfbsi267298a34.2.2024.07.16.09.43.53 for (version=TLS1_3 cipher=TLS_AES_256_GCM_SHA384 bits=256/256); Tue, 16 Jul 2024 09:43:53 -0700 (PDT) Received-SPF: pass (google.com: domain of dave@dtrt.org designates 208.79.240.5 as permitted sender) client-ip=208.79.240.5; Received: from smtpauth.rollernet.us (localhost [127.0.0.1]) by smtpauth.rollernet.us (Postfix) with ESMTP id 89ECE2800860; Tue, 16 Jul 2024 09:43:51 -0700 (PDT) Received: from webmail.rollernet.us (webmail.rollernet.us [IPv6:2607:fe70:0:14::a]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (2048 bits) server-digest SHA256) (Client did not present a certificate) by smtpauth.rollernet.us (Postfix) with ESMTPSA; Tue, 16 Jul 2024 09:43:50 -0700 (PDT) MIME-Version: 1.0 Date: Tue, 16 Jul 2024 06:43:50 -1000 From: "David A. Harding" To: Tim Ruffing Cc: bitcoindev@googlegroups.com Subject: Re: [bitcoindev] BIP Draft: "ChillDKG: Distributed Key Generation for FROST" In-Reply-To: <8768422323203aa3a8b280940abd776526fab12e.camel@timruffing.de> References: <8768422323203aa3a8b280940abd776526fab12e.camel@timruffing.de> Message-ID: <5ce152c9181ea552b8e146c9329f011b@dtrt.org> X-Sender: dave@dtrt.org Content-Type: text/plain; charset="UTF-8"; format=flowed X-Rollernet-Abuse: Contact abuse@rollernet.us to report. Abuse policy: http://www.rollernet.us/policy X-Rollernet-Submit: Submit ID 24c9.6696a346.48786.0 X-Original-Sender: dave@dtrt.org X-Original-Authentication-Results: gmr-mx.google.com; spf=pass (google.com: domain of dave@dtrt.org designates 208.79.240.5 as permitted sender) smtp.mailfrom=dave@dtrt.org Precedence: list Mailing-list: list bitcoindev@googlegroups.com; contact bitcoindev+owners@googlegroups.com List-ID: X-Google-Group-Id: 786775582512 List-Post: , List-Help: , List-Archive: , List-Unsubscribe: , X-Spam-Score: -0.8 (/) On 2024-07-08 10:05, Tim Ruffing wrote: > Jonas Nick and I have been working on a BIP draft for Distributed Key > Generation for FROST Threshold Signatures Thank you Tim and Jonas! This looks amazing! One quick question; you write: > Simple backups: The capability of ChillDKG to recover devices from a > static seed and public recovery data avoids the need for secret > per-session backups, enhancing user experience. By "public recovery data", I assume you mean that security is not weakened by the data being made public. However, are there any privacy implications? For comparison, if everyone knows what BIP32 HD path I use, that doesn't weaken my privacy; but if everyone knows my BIP32 xpub, that pretty much destroys my onchain privacy. Where (if anywhere) does ChillDKG recovery data fall on this spectrum? Thanks again!, -Dave -- You received this message because you are subscribed to the Google Groups "Bitcoin Development Mailing List" group. To unsubscribe from this group and stop receiving emails from it, send an email to bitcoindev+unsubscribe@googlegroups.com. To view this discussion on the web visit https://groups.google.com/d/msgid/bitcoindev/5ce152c9181ea552b8e146c9329f011b%40dtrt.org.