Schnorr signatures BIP

Posted by Andrew Poelstra

Sep 14, 2018/14:38 UTC

In a discussion on the Bitcoin development mailing list, Andrew Poelstra clarified that M-of-N threshold MuSig signatures can be created for any values of M and N. Threshold signatures are mentioned in the BIP which started the thread, and by combining Schnorr signatures with Pedersen Secret Sharing, it is possible to obtain an interactive threshold signature scheme that ensures that signatures can only be produced by arbitrary but predetermined sets of signers. For example, k-of-n threshold signatures can be realized this way. Poelstra also mentioned that the combination of MuSig and VSS is implemented in his code. Erik Aronesty raised questions about building up threshold signatures via concatenation or indicating that of M of N are valid, but Poelstra did not address those specific points.

Link to Raw Post
Bitcoin Logo

TLDR

Join Our Newsletter

We’ll email you summaries of the latest discussions from authoritative bitcoin sources, like bitcoin-dev, lightning-dev, and Delving Bitcoin.

Explore all Products

ChatBTC imageBitcoin searchBitcoin TranscriptsSaving SatoshiBitcoin Transcripts Review
Built with 🧡 by the Bitcoin Dev Project
View our public visitor count

We'd love to hear your feedback on this project?

Give Feedback