[Cryptography] "Incremental" DH Key exchange ??

jamesd at echeque.com jamesd at echeque.com
Thu Aug 23 01:40:19 EDT 2018


On 22/08/2018 22:03, Henry Baker wrote:
> Suppose that there's essentially no latency and
> that messages are extremely cheap (relative to
> everything else), so we're no longer trying to
> minimize round-trips during a key exchange.
> 
> I'm wondering if there's a DH-type of key exchange
> which "incrementalizes" the key exchange to develop
> a shared secret a few bits at a time.
> 
> My analogy/intuition here is a Newton-type iteration
> that doubles the number of shared secret bits on
> every iteration.

What does that buy you?

Why do you want to establish a shared secret in this way?


More information about the cryptography mailing list