Author: Gregory Maxwell 2014-04-04 14:14:12
Published on: 2014-04-04T14:14:12+00:00
In an email exchange on April 4, 2014, Nikita Schmidt suggested that the field order (p) should be used for arithmetic in Bitcoin due to its consistency with current practices. However, given different bit lengths, consistency must be chosen over other factors. Operation mod the group order is necessary for secret key combination in type-2 private derivation for BIP-32 and for a secret sharing scheme that is compatible with threshold ECDSA. The concern was raised that any private key secret sharing scheme should be compatible with threshold ECDSA to avoid redundancy in specification.
Updated on: 2023-05-19T18:27:01.730178+00:00