Author: Andrew Poelstra 2018-09-03 00:05:18
Published on: 2018-09-03T00:05:18+00:00
In an email exchange, Erik Aronesty noted that the spec cannot be used directly with a Shamir scheme to produce single-round threshold multisigs. This is because shares of point R would need to be broadcast to share participants in order to produce valid single signatures. However, (R, s) schemes can still be used online if participants publish the R(share). On the other hand, Andrew Poelstra dismissed FUD and clarified that there are no non-interactive Schnorr signatures. Andrew Poelstra is a mathematician in the Mathematics Department of Blockstream.
Updated on: 2023-06-13T03:43:03.792885+00:00