commit e8522b5244168135d478c12383bb59a4afcbce6d
parent ee9ef5b34071728c0880ebe0155d2b9c7edd5295
Author: Martin Schanzenbach <schanzen@gnunet.org>
Date: Tue, 15 Apr 2025 22:37:38 +0200
delete caveat
Diffstat:
1 file changed, 1 insertion(+), 6 deletions(-)
diff --git a/draft-schanzen-cake.xml b/draft-schanzen-cake.xml
@@ -349,12 +349,7 @@ HKDF-Extract(ss_I,.) = Master Secret (MS)
up until that point.
</t>
<t>
- IMPORTANT: The ETS is derived using the transcript of InitiatorHello*.
- This transcript can, for obvious reasons, not yet include the encrypted tuple that
- is part of the InitiatorHello.
- All following transcripts that include the InitiatorHello include
- the encrypted part as well.
- When a traffic secret (*TS) is used to encrypt data, the respective
+ When a traffic secret ([I,R][A,H]TS) is used to encrypt data, the respective
encryption key and starting nonce is generated as follows:
</t>
<figure anchor="figure_traffic_key_derivation" title="Traffic Key Generation.">