-
Notifications
You must be signed in to change notification settings - Fork 0
Verify initial ciphertext #2
Copy link
Copy link
Open
Description
In the Signal X3DH protocol one of the steps of initiateKeyAgreement is:
An initial ciphertext encrypted with some AEAD encryption scheme using AD as associated data and using an encryption key which is either SK or the output from some cryptographic PRF keyed by SK.
I believe this is not done or mentioned here? I would love an example in the Usage section how that could be done, thanks!
Reactions are currently unavailable
Metadata
Metadata
Assignees
Labels
No labels