-
koe
there may be some details missing in the original borromean sig paper
-
PlasmaPower
thanks, I'm already appreciating that it uses the usual variable names for things
-
selsta
also functional tests fail on my system now but I haven’t found out which commit is responsible
-
moneromooo
selsta: I don't see it, it's in an old (or closed) PR/issue ?
-
PlasmaPower
On an unrelated note, for linkable ring signatures, is there a reason key images are k*Hp(K) instead of k*H where H is another basepoint? Just that it means solving the discrete logarithm once wouldn't break all ring sigs? Or is there an inherent flaw in using the same basepoint for all keys in a ring?
-
selsta
-
moneromooo
Thanks.
-
koe
PlasmaPower interesting question, Im not sure. Try asking in #monero-research-lab
-
moneromooo
We use Cryptonight as KDF for the wallet password. There exist ASICs for this, though there's no more incentive to improve them. What do people think of bumping the default number of iterations from 1 to... something higher than 1 ?
-
hyc
if we're going to tweak the KDF, it's an incompatible change, regardless. why not go all the way to CN/R?
-
moneromooo
Sure, we could.
-
cohcho
"This is for the case of trying to mine with insufficient RAM for a dataset?" <-- accidental or permanent lack of RAM for a dataset while calling rx_slow_hash with miners != 0.
-
vtnerd
theres also argon2 in our codebase now
-
moneromooo
Oh, good point...
-
moneromooo
Much bigger patch though.
-
sarang
argon2 is much more standard and intended for this purpose
-
hyc
cohcho btw you might want to integrate
monero-project/monero #6223 first
-
cohcho
hyc PR#6223 is independent and can be merged separately. It actualy like adding MONERO_RANDOM_UMASK=4 on the first dataset allocation failure.
-
koe
wondering about the tx_extra extra nonce; it sounds like mining pools use this to prevent nonce overlap, is there any kind of common implementation? For example, a common extra nonce tag used (since payment IDs live in the extra nonce and use tags 0x00 and 0x01)? A common nonce length?
-
tevador
-
koe
yeah its not clear to me which thing is related to the miners reserve size
-
koe
since payment IDs also apparently go inside the extra nonce
-
koe
or is it parsed differently based on the transaction type? so miner transactions extra nonce is basically ignored, and regular transactions may try to find a payment ID inside
-
cohcho
there is likely layered serialization, did actually read the code?
-
koe
serialization is beyond me
-
Snipa
The pools vary their nonce lengths on implementation. nodejs-pool for example, uses it to implement the extended mining protocol further in the chunk, but generally, no, there's no agreed-upon standard for the data auctually in the extra nonce bits of the coinbase txn.
-
koe
ok thanks
-
koe
why is the block header nonce only 4 bytes?