<oembed><type>rich</type><version>1.0</version><author_name>npub17w8rw3wtcr03zdsdjhmcj37w0g6l79gsspleltsznexdktv0qw0qd3nc05</author_name><author_url>https://nostr.ae/npub17w8rw3wtcr03zdsdjhmcj37w0g6l79gsspleltsznexdktv0qw0qd3nc05</author_url><provider_name>njump</provider_name><provider_url>https://nostr.ae</provider_url><html>📅 Original date posted:2017-04-07&#xA;📝 Original message:Hey everyone, This is an idea that I had about Segwit and Gregory&#39;s&#xA;proposal from yesterday that I wanted to run by everyone on this list. I&#39;m&#xA;not at all sure what this would mean for non-upgraded nodes on the network&#xA;and would like feedback on that. This is not a formal BIP as it&#39;s a&#xA;modification to a previously submitted one, but I&#39;m happy to formalize it&#xA;if it would help.&#xA;----------------------------------------&#xA;MotivationOne of the interesting aspects of Gregory Maxwell’s proposal is&#xA;that it only precludes the covert version of ASICBoost. He specifically&#xA;left the overt version alone.&#xA;&#xA;Overt ASICBoost requires grinding on the version bits of the Block header&#xA;instead of the Merkle Root. This is likely more efficient than the Merkle&#xA;Root grinding (aka covert ASICBoost) and requires way less resources (much&#xA;less RAM, SHA256 calculations, no tx shuffling, etc).&#xA;&#xA;If we combine Gregory Maxwell’s proposal with BIP-141 (Segwit) and add a&#xA;slight modification, this should, in theory, make ASICBoost a lot more&#xA;useful to miners and appeal to their financial interests.&#xA;The Modification&#xA;&#xA;Currently, the version bits (currently 4 bytes, or 32 bits) in the header&#xA;are used for BIP9 signaling. We change the version bits to a nonce-space so&#xA;the miners can use it for overt ASICBoost. The 32-bits are now moved over&#xA;to the Coinbase transaction as part of the witness commitment. The witness&#xA;commitment goes from 38 bytes to 42 bytes, with the last 4 bytes being used&#xA;as the version bits in the block header previously. The witness commitment&#xA;becomes required as per Gregory Maxwell’s proposal.&#xA;Reasoning&#xA;&#xA;First, this brings ASICBoost out into the open. Covert ASICBoost becomes&#xA;much more costly and overt ASICBoost is now encouraged.&#xA;&#xA;Second, we can make this change relatively quickly. Most of the Segwit&#xA;testing stays valid and this change can be deployed relatively quickly.&#xA;&#xA;Note on SPV clients&#xA;&#xA;Currently Segwit stores the witness commitment in the Coinbase tx, so&#xA;lightweight clients will need to get the Coinbase tx + Merkle proof to&#xA;validate segwit transactions anyway. Putting block version information in&#xA;the Coinbase tx will not impose an extra burden on upgraded light clients.&#xA;-------------- next part --------------&#xA;An HTML attachment was scrubbed...&#xA;URL: &lt;http://lists.linuxfoundation.org/pipermail/bitcoin-dev/attachments/20170407/93c88127/attachment.html&gt;</html></oembed>