[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
Re: New attack on mixminion (& fix)
On Mon, 2002-08-26 at 10:56, Roger Dingledine wrote:
[...]
> Out of curiosity, is our encryption deterministic? That is, if I
> encrypt a given payload along a given path and then do it again, will
> the ciphermessages be linkable?
If I understand your question properly, "no." The payload encryption
keys are based on the SK_i shared secrets, and those are chosen randomly
each time.
> In any case, I think this is an ok fix to add.
Good. (BTW, George: can you confirm that my amendment of the spec
describes this fix correctly?)
--
Nick