You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Added note that Z in step f is not reused from step d.
May I suggest using different letters for this, or numbered instances
like Z0 and Z1? It's confusing to define a function F(m, Z, Z) as
you're doing here where the two Z's are actually different parameters.
Using different Z for steps d and f breaks PRNG boundary - RFC-6979 is essentially ECDSA plus a user-seeded HMAC-DRBG, using different Zs changes and breaks the PRNG algorithm. See Issue 2
May I suggest using different letters for this, or numbered instances
like Z0 and Z1? It's confusing to define a function F(m, Z, Z) as
you're doing here where the two Z's are actually different parameters.
https://mailarchive.ietf.org/arch/msg/cfrg/jmfn1b880x7-7gZKb7_uwLvE3oU/
The text was updated successfully, but these errors were encountered: