On 04/08/2021, 14:43, "Scott Fluhrer (sfluhrer)" wrote:
>
> I am glad that someone in the working group is looking at this. However, as
> I reviewed this before the wg meeting, I was completely puzzled by this text
> (from section 6.1):
>
> 3DH
>
>C computes K = H(g^y ^ PrivU || PubU ^ x
I am glad that someone in the working group is looking at this. However, as I
reviewed this before the wg meeting, I was completely puzzled by this text
(from section 6.1):
3DH
C computes K = H(g^y ^ PrivU || PubU ^ x || PubS ^ PrivU || IdU || IdS )
S computes K = H(g^x ^ PrivS || PubS ^