On Monday, Sep 29, 2014 at 4:35 PM, Daniel Kahn Gillmor
<[email protected]>, wrote:
On 09/29/2014 04:24 PM, Feng Hao wrote:
> It is a bit odd though to compare the identity and the message, as they are
> two different types of data.
I think the proposal was to compare two (id,msg) structs with each
other, not to compare the identity with the message.
(Agreed; just to amplify.)
Perhaps what Mike was getting at with the minmax formulation is that a usual
precondition is that id0 != id1, and thus the identities suffice to establish
an unambiguous ordering. (Some otherwise useful(?) deterministic schemes might
permit universal impersonation if this precondition isn't respected; xor^2 and
such.)
_______________________________________________
Curves mailing list
[email protected]
https://moderncrypto.org/mailman/listinfo/curves