From lloyd.fourn at gmail.com Fri Dec 18 00:43:08 2020 From: lloyd.fourn at gmail.com (Lloyd Fournier) Date: Fri, 18 Dec 2020 11:43:08 +1100 Subject: [Lightning-dev] Covert channel recovery with Oblivious Signatures In-Reply-To: References: Message-ID: > I suspect part of the proof-of-discrete-log-equivalance can be gated as well by a ZKCP on payment point+scalar the proof is provided only on payment. > The selling node operator does not even need to reveal `z`. Actually no -- the fact that you were able to create a secure conditional payment for the proof would always prove the proof existed. You wouldn't need to pay for the proof then! LL -------------- next part -------------- An HTML attachment was scrubbed... URL: