Replies: 3 comments 4 replies
-
If it can be implemented, i think it will be nice, since SPOs are already used to this process for verification, so it will be easier to get people on-boarded. |
Beta Was this translation helpful? Give feedback.
-
That is a good point. We were thinking of doing exactly what is proposed in CIP 22 but with the KES key instead of the VRF key. I wonder what was the rationale of CIP 22 to choose VRF keys instead of KES keys to produce these signatures. Probably simple to transition to VRF if we choose to go that path. I'm wondering about long range attacks. Let's assume that an adversary manages to attack a few SPOs at the same time, at a given point in time. If we register with the VRF keys, then it would be possible to mimic a past registration, create fresh mithril keys to sign a fake mithril chain. If we used KES keys, then an adversary that attacks SPOs at a given point in time would only be able to sign registrations for that epoch, and not previous ones. |
Beta Was this translation helpful? Give feedback.
-
Is this not superseded by #508 ? |
Beta Was this translation helpful? Give feedback.
-
Following a discussion on Discord on the acceptability of signing-based registration process, somebody pointed me at https://cips.cardano.org/cips/cip22/ which could be a good fit to remove the need for SPOs to run Mithril signer alongside block producers.
Beta Was this translation helpful? Give feedback.
All reactions