138 Commits (406.derive-skenc-from-avk.0)
 

Author SHA1 Message Date
Daira Hopwood 730f97e06c Derive sk_enc from a_vk. 8 years ago
Daira Hopwood 1b1e1f8456 Add lead byte to KDF input. 8 years ago
Daira Hopwood 95e6fc42cd Seriously, LaTeX, this paragraph is just fine. 8 years ago
Daira Hopwood a8ff6110e6 Adjust list spacing. (I'm picky about things like that.) 8 years ago
Daira Hopwood e15a4fc0a4 Clarify that the nonce to AEAD_CHACHA20_POLY1305 is 96 bits, and the key 256 bits. 8 years ago
Daira Hopwood c57d295a38 Fix definitions of a_vk and a_pk in Pour statement. fixes zips#18 8 years ago
Daira Hopwood 64c91164ab Descriptions of scriptSig and scriptPubKey were the wrong way round. fixes zips#17 8 years ago
Daira Hopwood 2fac159404 Fix index error in computation of hSig. 8 years ago
Daira Hopwood 26df1df754 Define some convenience macros to shorten 1..N^{old,new}. 8 years ago
Daira Hopwood 9bbae8ce2a Makefile: avoid error if protocol.aux doesn't exist. 8 years ago
Daira Hopwood a1b1cd62c3 Notation. 8 years ago
Daira Hopwood 6d25c4beb2 Be more precise about the specification of Curve25519 functions. 8 years ago
Daira Hopwood a9da411767 Rearrange domain separation to make room for greater pour arities, and 8 years ago
Daira Hopwood 39e5992e60 Clarify endianness. 8 years ago
Daira Hopwood 608c0dbcb0 Fix potential attacks due to unclamped esk provided to a viewing key holder. 8 years ago
Daira Hopwood acf7cabe39 More PDF niceties. 8 years ago
Daira Hopwood 5e14841dce Make hyperref links go to the top of the page to avoid having to scroll up. 8 years ago
Daira Hopwood 9069509095 Generate PDF index. 8 years ago
Daira Hopwood c8e8846a53 More cosmetics. 8 years ago
Daira Hopwood 06e747ed1f Suppress spurious overfull hbox warnings; other cosmetics. 8 years ago
Daira Hopwood 96f8c869f2 Fancy linking of cross-references and URLs. 8 years ago
Daira Hopwood 63b7fa7f1a Move the specification of how a coin plaintext is encoded. 8 years ago
Daira Hopwood 661e894907 Remove version byte in coin plaintext. 8 years ago
Daira Hopwood b0f06c6589 Correct a misstatement in the 'Decryption by a Viewing Key Holder' section. 8 years ago
Daira Hopwood b6f8ab3f9b Formatting; fix key derivation diagram. 8 years ago
Daira Hopwood 70dede1507 Unified spec with or without viewing keys. 8 years ago
Daira Hopwood 605d6ef5b1 Cosmetics. 8 years ago
Daira Hopwood 1875e0d389 Fix size of r in Coin Plaintexts section. 8 years ago
Daira Hopwood b2ef4732af Don't mention s in Coins section; it's confusing given that COMM^s no longer exists. 8 years ago
Daira Hopwood d3b2bfe5fb Improve presentation of decryption by viewing key holder; define \bot. 8 years ago
Daira Hopwood 9ad8d7ee50 Improve presentation of P^disclose, fix a use-before-definition, 8 years ago
Daira Hopwood e634b9ceb1 Viewing key optimizations. 8 years ago
Daira Hopwood d3b0cfd649 Correct confusion between N^new and N^old in decryption by a viewing key holder, 8 years ago
Daira Hopwood 9ba83513bb Fix length of r. 8 years ago
Daira Hopwood f5ab4ef51d Ensure that a viewing key holder can decrypt the value of the old coin. 8 years ago
Daira Hopwood 80dcdeef4f "additional data" -> "associated data". 8 years ago
Daira Hopwood d7dd20d281 Wording improvement. 8 years ago
Daira Hopwood 65ebefd7e8 Merge "Raw Encoding" subsubsections into their parent, and correct a section title. 8 years ago
Daira Hopwood f3041d4e07 The viewing key holder should check epk. 8 years ago
Daira Hopwood 9611e0b35b The arguments to Curve25519 multiplication were consistently the wrong way round. 8 years ago
Daira Hopwood c6ec1e0e07 Note about some fields not being constrained in the circuit. 8 years ago
Daira Hopwood a816d1fd18 Correct an obsolete paragraph relating a_sk and a_pk. 8 years ago
Daira Hopwood 32963392a8 Merge branch 'master' into 406.viewing-keys.1 8 years ago
Daira Hopwood 8c537c300b Add MIT license. fixes #15 8 years ago
Daira Hopwood 0770ff87dc Acknowledgements. 8 years ago
Daira Hopwood 0545c5b9ca Work in progress on "Differences from Zerocash" section. 8 years ago
Daira Hopwood 98398f0385 Update Pour statement for viewing keys. 8 years ago
Daira Hopwood a2d625f1b2 Merge branch '738.fix-internalh-collision.0' into 406.viewing-keys.1 8 years ago
Daira Hopwood ce18d51650 Proposed fix for domain separation and truncation. 8 years ago
Daira Hopwood e7ad03ac52 The nonce input to the AEAD isn't long enough, so derive K^disclose_i using a PRF instead. 8 years ago