[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: New attack on mixminion (& fix)



On Mon, 2002-08-26 at 10:56, Roger Dingledine wrote:
 [...]
> Out of curiosity, is our encryption deterministic? That is, if I
> encrypt a given payload along a given path and then do it again, will
> the ciphermessages be linkable?

If I understand your question properly, "no."  The payload encryption
keys are based on the SK_i shared secrets, and those are chosen randomly
each time.

> In any case, I think this is an ok fix to add.

Good.  (BTW, George: can you confirm that my amendment of the spec
describes this fix correctly?)
-- 
Nick