On Monday, Sep 29, 2014 at 4:35 PM, Daniel Kahn Gillmor 
<[email protected]>, wrote:


On 09/29/2014 04:24 PM, Feng Hao wrote:
> It is a bit odd though to compare the identity and the message, as they are 
> two different types of data.

I think the proposal was to compare two (id,msg) structs with each
other, not to compare the identity with the message.


(Agreed; just to amplify.)

​
​​Perhaps what Mike was getting at with the minmax formulation is that a usual 
precondition is that id0 != id1, and thus the identities suffice to establish 
an unambiguous ordering. (Some otherwise useful(?) deterministic schemes might 
permit universal impersonation if this precondition isn't respected; xor^2 and 
such.)
_______________________________________________
Curves mailing list
[email protected]
https://moderncrypto.org/mailman/listinfo/curves

Reply via email to