<oembed><type>rich</type><version>1.0</version><author_name>npub1ae27kq6z802dkqw4ey4dgdx493szm8dpmcm76d7vt0ma9gf6fj4svz5t04</author_name><author_url>https://nostr.ae/npub1ae27kq6z802dkqw4ey4dgdx493szm8dpmcm76d7vt0ma9gf6fj4svz5t04</author_url><provider_name>njump</provider_name><provider_url>https://nostr.ae</provider_url><html>📅 Original date posted:2018-09-02&#xA;📝 Original message:On Wed, Aug 29, 2018 at 08:09:36AM -0400, Erik Aronesty wrote:&#xA;&gt; Note:&#xA;&gt; &#xA;&gt; This spec cannot be used directly with a shamir scheme to produce&#xA;&gt; single-round threshold multisigs, because shares of point R would need to&#xA;&gt; be broadcast to share participants in order to produce valid single&#xA;&gt; signatures.&#xA;&gt; &#xA;&gt; (R, s) schemes can still be used &#34;online&#34;, if share participants publish&#xA;&gt; the R(share).... but, not sure if it matter much, this choice eliminates&#xA;&gt; offline multiparty signing in exchange for batch validation.&#xA;&gt;&#xA;&#xA;Please stop with this FUD. No tradeoff was made. There are no non-interactive&#xA;Schnorr signatures.&#xA;&#xA;&#xA;Andrew&#xA; &#xA;&#xA;-- &#xA;Andrew Poelstra&#xA;Mathematics Department, Blockstream&#xA;Email: apoelstra at wpsoftware.net&#xA;Web:   https://www.wpsoftware.net/andrew&#xA;&#xA;&#34;A goose alone, I suppose, can know the loneliness of geese&#xA; who can never find their peace,&#xA; whether north or south or west or east&#34;&#xA;       --Joanna Newsom&#xA;&#xA;-------------- next part --------------&#xA;A non-text attachment was scrubbed...&#xA;Name: signature.asc&#xA;Type: application/pgp-signature&#xA;Size: 455 bytes&#xA;Desc: not available&#xA;URL: &lt;http://lists.linuxfoundation.org/pipermail/bitcoin-dev/attachments/20180903/cec88ce8/attachment-0001.sig&gt;</html></oembed>