<oembed><type>rich</type><version>1.0</version><author_name>npub1ae27kq6z802dkqw4ey4dgdx493szm8dpmcm76d7vt0ma9gf6fj4svz5t04</author_name><author_url>https://nostr.ae/npub1ae27kq6z802dkqw4ey4dgdx493szm8dpmcm76d7vt0ma9gf6fj4svz5t04</author_url><provider_name>njump</provider_name><provider_url>https://nostr.ae</provider_url><html>📅 Original date posted:2018-09-05&#xA;📝 Original message:On Wed, Sep 05, 2018 at 08:26:14AM -0400, Erik Aronesty wrote:&#xA;&gt; Why would you call it FUD?   All the weird hemming and hawing about it is&#xA;&gt; really strange to me.  The more I look into it and speak to professors&#xA;&gt; about i, the more it seems &#34;so trivial nobody really talks about it&#34;.&#xA;&gt; &#xA;&gt; 1. Generate an M of N shared public key (done in advance of signing ....&#xA;&gt; this gets you the bitcoin address)&#xA;&gt; 2. Generate signature fragments (this can be done offline, with no&#xA;&gt; communication between participants)&#xA;&gt; &#xA;&gt; Detailed explanation with code snippets:&#xA;&gt; &#xA;&gt; https://medium.com/@simulx/an-m-of-n-bitcoin-multisig-scheme-e7860ab34e7f&#xA;&gt;&#xA;&#xA;The hemming and hawing is because you&#39;ve been repeatedly told that your&#xA;scheme doesn&#39;t work, and to please implement it in some computer algebra&#xA;system so that you can see that (or so we can see where your mistake is),&#xA;and you instead continue to post incomplete/incoherent copies of the same&#xA;thing across multiple mediums - Reddit, this list, Bitcointalk, Medium,&#xA;etc ad nauseum.&#xA;&#xA;It&#39;s distracting and offensive to people who have spent a lot of time and&#xA;energy thinking about this stuff, and more importantly it causes confusion&#xA;in the public eye. Phrasings like &#34;weird hemming and hawing&#34; suggest that&#xA;we don&#39;t know/don&#39;t care about some insight you have, which is not true.&#xA;This is why your posts are FUD.&#xA;&#xA;For example, in your linked post I looked at every single instance of the&#xA;character &#39;k&#39; and *not one of them* defined the value &#39;k&#39; from which &#39;R&#39;&#xA;is derived in the signing procedure.&#xA;&#xA;&#xA;Of course there is no possible value, individual signers cannot learn &#39;R&#39;&#xA;at signing time without interaction, and your whole scheme is broken. Given&#xA;the number of times you&#39;ve been told this, I find it hard to believe that&#xA;this was an honest mistake.&#xA;&#xA;&#xA;&#xA;Andrew&#xA;&#xA;&#xA;&#xA;-- &#xA;Andrew Poelstra&#xA;Research Director, Mathematics Department, Blockstream&#xA;Email: apoelstra at wpsoftware.net&#xA;Web:   https://www.wpsoftware.net/andrew&#xA;&#xA;&#34;Make it stop, my love; we were wrong to try&#xA; Never saw what we could unravel in traveling light&#xA; Nor how the trip debrides like a stack of slides&#xA; All we saw was that time is taller than space is wide&#34;&#xA;       --Joanna Newsom&#xA;&#xA;-------------- next part --------------&#xA;A non-text attachment was scrubbed...&#xA;Name: signature.asc&#xA;Type: application/pgp-signature&#xA;Size: 455 bytes&#xA;Desc: not available&#xA;URL: &lt;http://lists.linuxfoundation.org/pipermail/bitcoin-dev/attachments/20180905/8174ffbf/attachment.sig&gt;</html></oembed>