<oembed><type>rich</type><version>1.0</version><author_name>npub1vjzmc45k8dgujppapp2ue20h3l9apnsntgv4c0ukncvv549q64gsz4x8dd</author_name><author_url>https://nostr.ae/npub1vjzmc45k8dgujppapp2ue20h3l9apnsntgv4c0ukncvv549q64gsz4x8dd</author_url><provider_name>njump</provider_name><provider_url>https://nostr.ae</provider_url><html>📅 Original date posted:2020-05-17&#xA;📝 Original message:&gt; * At the same time, it retains your-keys-your-coins noncustodiality,&#xA;because every update of a Lightning channel requires your keys to sign off&#xA;on it.&#xA;&#xA;Yes I agree, I can foresee an easier step where managing low-value channel&#xA;and get your familiar with smooth key management maybe a first step before&#xA;running a full-node and getting a more full-fledged key management solution.&#xA;&#xA;&gt; It may even be possible, that the Lightning future with massive SPV might&#xA;end up with more economic weight in SPV nodes, than in the world without&#xA;Lightning and dependent on centralized custodial services to scale.&#xA;&#xA;Even evaluating economic weight in Lightning is hard, both parties have&#xA;their own chain view, and it&#39;s likely if you assume a hub-and-spoke&#xA;topology, leaf nodes are going to be SPV and internal nodes full-nodes ?&#xA;&#xA;&gt; Money makes the world go round, so such backup servers that are&#xA;publicly-facing rather than privately-owned should be somehow incentivized&#xA;to do so, or else they would not exist in the first place.&#xA;&#xA;I was thinking about the current workflow, Alice downloads her New Shiny&#xA;LN-wallet, she is asked to backup the seed, she is asked to pick-up&#xA;backup(s) nodes among her friends, relatives or business partners and is&#xA;NOT provided any automatic hint and register backup nodes addresses, maybe&#xA;even do out-of-band key exchange with this full-node operator. Therefore&#xA;you may avoid centralization by having not such publicly-facing servers. Of&#xA;course, Alice can still scrawl the web to and be lured to pickup malicious&#xA;public servers but if she is severely notified to not do so that may be&#xA;enough.&#xA;&#xA;So it would be a combination of UX+user education+fallback security&#xA;mechanism to avoid economy hijack. That maybe a better solution rather than&#xA;PoW-only SPV. We have an open network so you can&#39;t prevent someone to run&#xA;such type of client but at least if they have to do so you can provide them&#xA;with a better option ?&#xA;&#xA;Antoine&#xA;&#xA;&#xA;&#xA;&#xA;Le jeu. 14 mai 2020 à 00:02, ZmnSCPxj &lt;ZmnSCPxj at protonmail.com&gt; a écrit :&#xA;&#xA;&gt; Good morning Antoine,&#xA;&gt;&#xA;&gt;&#xA;&gt; &gt; While approaching this question, I think you should consider economic&#xA;&gt; weight of nodes in evaluating miner consensus-hijack success. Even if you&#xA;&gt; expect a disproportionate ratio of full-nodes-vs-SPV, they may not have the&#xA;&gt; same  economic weight at all, therefore even if miners are able to lure a&#xA;&gt; majority of SPV clients they may not be able to stir economic nodes. SPV&#xA;&gt; clients users will now have an incentive to cancel their hijacked history&#xA;&gt; to stay on the most economic meaningful chain. And it&#39;s already assumed,&#xA;&gt; that if you run a bitcoin business or LN routing node, you do want to run&#xA;&gt; your own full-node.&#xA;&gt;&#xA;&gt; One hope I have for Lightning is that it will replace centralized&#xA;&gt; custodial services, because:&#xA;&gt;&#xA;&gt; * Lightning gains some of the scalability advantage of centralized&#xA;&gt; custodial services, because you can now transfer to any Lightning client&#xA;&gt; without touching the blockchain, for much reduced transfer fees.&#xA;&gt; * At the same time, it retains your-keys-your-coins noncustodiality,&#xA;&gt; because every update of a Lightning channel requires your keys to sign off&#xA;&gt; on it.&#xA;&gt;&#xA;&gt; If most Lightning clients are SPV, then if we compare these two worlds:&#xA;&gt;&#xA;&gt; * There are a few highly-important centralized custodial services with&#xA;&gt; significant economic weight running fullnodes (i.e. now).&#xA;&gt; * There are no highly-important centralized custodial services, and most&#xA;&gt; everyone uses Lightning, but with SPV (i.e. a Lightning future).&#xA;&gt;&#xA;&gt; Then the distribution of economic weight would be different between these&#xA;&gt; two worlds.&#xA;&gt; It may even be possible, that the Lightning future with massive SPV might&#xA;&gt; end up with more economic weight in SPV nodes, than in the world without&#xA;&gt; Lightning and dependent on centralized custodial services to scale.&#xA;&gt;&#xA;&gt;&#xA;&gt; It is also entirely possible that custodial services for Lightning will&#xA;&gt; arise anyway and my hope is already dashed, come on universe, work harder&#xA;&gt; will you, would you really disappoint some randomly-generated Internet&#xA;&gt; person like that.&#xA;&gt;&#xA;&gt;&#xA;&gt; &gt;&#xA;&gt; &gt; I agree it may be hard to evaluate economic-weight-to-chain-backend&#xA;&gt; segments, specially with offchain you disentangle an onchain output value&#xA;&gt; from its real payment traffic. To strengthen SPV, you may implement forks&#xA;&gt; detection and fallback to some backup node(s) which would serve as an&#xA;&gt; authoritative source to arbiter between branches. Such backup node(s) must&#xA;&gt; be picked up manually at client initialization, before any risk of conflict&#xA;&gt; to avoid Reddit-style of hijack during contentious period or other massive&#xA;&gt; social engineering. You don&#39;t want autopilot-style of recommendations for&#xA;&gt; picking up a backup nodes and avoid cenralization of backups, but somehow a&#xA;&gt; uniform distribution. A backup node may be a private one, it won&#39;t serve&#xA;&gt; you any data beyond headers, and therefore you preserve public nodes&#xA;&gt; bandwidth, which IMO is the real bottleneck. I concede it won&#39;t work well&#xA;&gt; if you have a ratio of 1000-SPV for 1-full-node and people are not&#xA;&gt; effectively able to pickup a backup among their social environment.&#xA;&gt; &gt; What do you think about this model ?&#xA;&gt;&#xA;&gt; Money makes the world go round, so such backup servers that are&#xA;&gt; publicly-facing rather than privately-owned should be somehow incentivized&#xA;&gt; to do so, or else they would not exist in the first place.&#xA;&gt; Of course, a free market tends towards monopoly, because any entity that&#xA;&gt; happens to have even a slight advantage at the business will have more&#xA;&gt; money to use towards business reinvestment and increase its advantage&#xA;&gt; further, until they beat the competition to dust, anyone who has won a 4X&#xA;&gt; game knows to search for and stack those little advantages until you&#xA;&gt; snowball and conquer the world/galaxy/petri dish which is why the endgame&#xA;&gt; of 4X games is so boring compared to the start, we have seen this happen in&#xA;&gt; mining and exchanges and so on, and this works against your desire to have&#xA;&gt; a uniform distribution.&#xA;&gt;&#xA;&gt; If everyone runs such a privately-owned server, on the other hand, this is&#xA;&gt; not so different from having a Lightning node you run at your home that has&#xA;&gt; a fullnode as well and which you access via a remote control mobile device,&#xA;&gt; and it is the inconvenience of having such a server at your home that&#xA;&gt; prevents this in the first place.&#xA;&gt;&#xA;&gt; Regards,&#xA;&gt; ZmnSCPxj&#xA;&gt;&#xA;-------------- next part --------------&#xA;An HTML attachment was scrubbed...&#xA;URL: &lt;http://lists.linuxfoundation.org/pipermail/bitcoin-dev/attachments/20200516/5aa4025e/attachment.html&gt;</html></oembed>