12019-12-06T00:30:51 *** orlovsky has quit IRC
22019-12-06T00:31:20 *** dr-orlovsky has joined ##taproot-bip-review
32019-12-06T01:02:45 <maaku> Not exactly on topic, but responding to something that was just said in scrollback: is my understanding correct that if you need an adaptor signature, and you have any other signature of that key, you don't need cooperation to modify it to be the adaptor signature?
42019-12-06T01:09:19 <aj> https://github.com/ElementsProject/scriptless-scripts/pull/5 uses the terminology that R,s where s*G = R + H(R+T, P, m)P is a partial signature for adaptor T over message m with pubkey P; and therefore (R+T,s+t) is an adaptor signature which is a valid signature because (s+t)G = R+T+H(R+T,P,m)P
52019-12-06T01:10:44 <aj> maaku: so you could convert any signature R,s into a partial signature for adaptor T by calculating R-T,s-t which would make R,s = (R-T)+T,(s-t)+t the corresponding adaptor signature, but you'd have to know "t" for that, so it's maybe not that interesting?
62019-12-06T02:03:17 *** Chris_Stewart_5 has joined ##taproot-bip-review
72019-12-06T02:57:01 *** Chris_Stewart_5 has quit IRC
82019-12-06T03:52:00 *** ghost43 has quit IRC
92019-12-06T03:52:49 *** ghost43 has joined ##taproot-bip-review
102019-12-06T04:12:19 <aj> waxwing: you can't caclulate the adaptor "t" without knowing the private key (it's q-s+H(Q,P,m)p); the key holder in that case can't complete the partial signature because they can't determine "t" without knowing "q"; and if they do, they reveal their private key because someone else knows the DL of the R part of their signature. but see the pull/5 above; (s,Q,R) would be a partial signature, and
112019-12-06T04:12:20 <aj> (s+t,Q) would be the adaptor signature which is only generatable by someone who knows the private key
122019-12-06T04:32:43 *** arik_ has joined ##taproot-bip-review
132019-12-06T08:35:59 *** jonatack has quit IRC
142019-12-06T09:08:45 *** dr-orlovsky has quit IRC
152019-12-06T09:10:38 *** dr-orlovsky has joined ##taproot-bip-review
162019-12-06T09:16:51 <waxwing> aj, of course. i said exactly that in the mastodon thread i linked. i'm only talking about the naming.
172019-12-06T09:17:45 <waxwing> hence the 'feel free to argue it's not relevant ..' etc.
182019-12-06T09:20:53 *** davterra has quit IRC
192019-12-06T09:21:36 *** davterra has joined ##taproot-bip-review
202019-12-06T09:38:49 *** jonatack has joined ##taproot-bip-review
212019-12-06T09:41:54 <aj> waxwing: yeah, i think calling (s+t,Q) the adaptor signature and the thing anyone can make a "partial signature" solves that?
222019-12-06T09:47:01 *** jonatack_ has joined ##taproot-bip-review
232019-12-06T09:49:34 *** jonatack has quit IRC
242019-12-06T10:01:02 *** b10c has joined ##taproot-bip-review
252019-12-06T10:09:42 *** achow101 has quit IRC
262019-12-06T10:13:16 <waxwing> hmm i see what you mean ... but in everything written on the top 'partial sig' is referring to partial-in-multi and it's the "completed" adaptor (s+t, R+T) .. i mean .. can we just call s' the "adaptor" rather than "adaptor signature"? but then i think people are sometimes calling the scalar t the adaptor.
272019-12-06T10:13:37 <waxwing> i guess t is usually called the "adaptor secret" if anything
282019-12-06T10:24:50 *** achow101 has joined ##taproot-bip-review
292019-12-06T11:12:18 *** reallll has joined ##taproot-bip-review
302019-12-06T11:12:37 *** andytoshi has quit IRC
312019-12-06T11:15:27 *** belcher has quit IRC
322019-12-06T11:16:33 *** reallll is now known as belcher
332019-12-06T12:01:13 *** Chris_Stewart_5 has joined ##taproot-bip-review
342019-12-06T12:45:20 *** Chris_Stewart_5 has quit IRC
352019-12-06T12:52:17 *** jonatack_ has quit IRC
362019-12-06T13:00:14 *** Chris_Stewart_5 has joined ##taproot-bip-review
372019-12-06T13:55:21 *** Chris_Stewart_5 has quit IRC
382019-12-06T13:57:43 *** Chris_Stewart_5 has joined ##taproot-bip-review
392019-12-06T14:46:08 <waxwing> "written on the top" = "written on the topic" sorry
402019-12-06T15:40:47 *** dr-orlovsky has quit IRC
412019-12-06T15:53:19 *** jonatack_ has joined ##taproot-bip-review
422019-12-06T15:53:51 *** jonatack has joined ##taproot-bip-review
432019-12-06T16:14:46 *** jeremyrubin has joined ##taproot-bip-review
442019-12-06T16:18:24 *** andytoshi has joined ##taproot-bip-review
452019-12-06T16:18:24 *** andytoshi has joined ##taproot-bip-review
462019-12-06T16:57:36 *** _andrewtoth_ has quit IRC
472019-12-06T17:23:57 *** davterra has quit IRC
482019-12-06T19:04:19 *** b10c has quit IRC
492019-12-06T19:23:30 *** b10c has joined ##taproot-bip-review
502019-12-06T19:38:20 *** b10c has quit IRC
512019-12-06T19:52:39 *** dr-orlovsky has joined ##taproot-bip-review
522019-12-06T20:06:17 *** jonatack has quit IRC
532019-12-06T20:11:55 *** Chris_Stewart_5 has quit IRC
542019-12-06T20:30:14 *** Chris_Stewart_5 has joined ##taproot-bip-review
552019-12-06T20:43:11 *** _andrewtoth_ has joined ##taproot-bip-review
562019-12-06T20:46:37 *** jonatack has joined ##taproot-bip-review
572019-12-06T21:15:17 *** andytoshi has quit IRC
582019-12-06T21:22:13 *** dr-orlovsky has quit IRC
592019-12-06T21:24:01 *** dr-orlovsky has joined ##taproot-bip-review
602019-12-06T21:30:17 *** Chris_Stewart_5 has quit IRC
612019-12-06T22:10:24 *** dr-orlovsky has quit IRC
622019-12-06T22:11:05 *** dr-orlovsky has joined ##taproot-bip-review
632019-12-06T22:27:32 *** dr-orlovsky has quit IRC
642019-12-06T22:27:55 *** dr-orlovsky has joined ##taproot-bip-review
652019-12-06T23:58:27 *** mryandao has quit IRC