Skip to content

Commit

Permalink
Rephrased recommendation regarding sid
Browse files Browse the repository at this point in the history
  • Loading branch information
BjoernMHaase committed Sep 20, 2024
1 parent 01e220d commit e7aaab6
Showing 1 changed file with 3 additions and 1 deletion.
4 changes: 3 additions & 1 deletion draft-irtf-cfrg-cpace.md
Original file line number Diff line number Diff line change
Expand Up @@ -782,7 +782,9 @@ Algorithms for curves other than the ones recommended here can be based on the p
Secret scalars ya and yb MUST NOT be reused. Values for sid SHOULD NOT be reused since the composability
guarantees established by the simulation-based proof rely on the uniqueness of session ids {{AHH21}}.

If CPace is used in a concurrent system, it is RECOMMENDED that a unique sid is generated by the higher-level protocol and passed to CPace. One suitable option is that sid is generated by concatenating ephemeral random strings contributed by both parties.
If the higher-level protocol that integrates CPace is able to establish a unique sid identifier for the communication session,
it is RECOMMENDED that this is passed to CPace as sid parameter.
One suitable option for generating sid is concatenation of ephemeral random strings contributed by both parties.

## Side channel attacks

Expand Down

0 comments on commit e7aaab6

Please sign in to comment.