lsd0012

LSD0012: CORE Authenticated Key Exchange (CAKE)
Log | Files | Refs

commit e8522b5244168135d478c12383bb59a4afcbce6d
parent ee9ef5b34071728c0880ebe0155d2b9c7edd5295
Author: Martin Schanzenbach <schanzen@gnunet.org>
Date:   Tue, 15 Apr 2025 22:37:38 +0200

delete caveat

Diffstat:
Mdraft-schanzen-cake.xml | 7+------
1 file changed, 1 insertion(+), 6 deletions(-)

diff --git a/draft-schanzen-cake.xml b/draft-schanzen-cake.xml @@ -349,12 +349,7 @@ HKDF-Extract(ss_I,.) = Master Secret (MS) up until that point. </t> <t> - IMPORTANT: The ETS is derived using the transcript of InitiatorHello*. - This transcript can, for obvious reasons, not yet include the encrypted tuple that - is part of the InitiatorHello. - All following transcripts that include the InitiatorHello include - the encrypted part as well. - When a traffic secret (*TS) is used to encrypt data, the respective + When a traffic secret ([I,R][A,H]TS) is used to encrypt data, the respective encryption key and starting nonce is generated as follows: </t> <figure anchor="figure_traffic_key_derivation" title="Traffic Key Generation.">