From ZmnSCPxj at protonmail.com Wed Jun 26 05:18:26 2019 From: ZmnSCPxj at protonmail.com (ZmnSCPxj) Date: Wed, 26 Jun 2019 05:18:26 +0000 Subject: [Lightning-dev] Proposal: Lightning Pre-Image Encryption Standard In-Reply-To: References: Message-ID: <0u_HlmMVZWjK1afW8GB8O1JebkgPhK1fZNq7HShS1Ow6EafwkWWNX4VSjSPEddwnzkY7R9NvnVlxfGHt7JV0YYkhs5ZDJqvd_3ueT1w1ocA=@protonmail.com> Good morning Stepan, and Nadav, Both additions seem good idea to me. > - Sally generates the invoice with the preimage `S` (i.e. x-coordinate of this point to make it 32-bytes long) Does this require Bob to attempt both positive and negative sign for the y-coordinate? Alternately we can force Sally to always use a scalar such that generated point has a fixed sign (or some other property to derive the sign of the missing coordinate). Regards, ZmnSCPxj