On 5 Sep 2015 8:27 pm, "Ximin Luo" <[email protected]> wrote: > > Hey, thanks for the post. It's always nice to hear about new work on ratchets. > It isn't really a ratchet (so some of the rest of your reply is moot). It is a way to publish a single long term public key that people can encrypt a message to, but with the ability for you to delete part of your secret key to prevent a later leak of your key from compromising past messages.
It is a way to achieve the same forward security as 3DH, but without needing both parties online at the same time (and avoiding signed ephemerals). Or at least that is my interpretation.
_______________________________________________ Messaging mailing list [email protected] https://moderncrypto.org/mailman/listinfo/messaging
