MuSig2 je spreman u očekivanju dva nova BIP-a: uvođenje nove ere Multisig privatnosti

By Bitcoin Časopis - prije 5 mjeseca - Vrijeme čitanja: 3 minute

MuSig2 je spreman u očekivanju dva nova BIP-a: uvođenje nove ere Multisig privatnosti

Traditionally, creating an n-of-n multisig using CHECKMULTISIG means you’ll publish a proportional number of signatures and public keys on the blockchain to signers in the transaction. This approach not only reveals the total number of participants in the transaction, but also incurs progressively higher transaction fees as the number of signers grow. MuSig, on the other hand, allows a group of users to kolektivno generate a single signature and public key to validate a transaction, which enhances privacy and lowers the transaction costs for all the signers involved.

When MuSig was initially introduced in 2018, its main shortcoming compared to CHECKMULTISIG was user experience, specifically the requirement for three rounds of interactive communication between signers. With the introduction of MuSig2 (BDP 327) in 2020, as the successor to the 2018 MuSig (also called MuSig1), we made significant progress in non-interactive signing, bringing us a much more desired experience.

Kako radi

Preslikavajući funkcionalnost svog prethodnika, MuSig2 smanjuje potrebne runde komunikacije s tri na dvije. Postavljanje novčanika za MuSig2 počinje prikupljanjem proširenih javnih ključeva (xpubs) svih sudionika i izgradnjom deskriptora za svaki novčanik, a sve je to u skladu s postojećim praksama multisig-a.

MuSig2 faza potpisivanja zatim uključuje:

First-Round Message: During the wallet setup, nonces are generated, added to the Partially Signed Bitcoin Transactions (PSBTs), and shared amongst the other signers.Second-Round Message: The nonces received are used to create a partial signature and are sent back to each of the other signers.

Alternativa tome da svaki potpisnik izravno priopći svoj jednokratni i djelomični potpis svakom drugom potpisniku je uvođenje koordinatora treće strane kako bi se pojednostavio proces komunikacije.

In the signing process, each signer's nonce is composed of two elliptic curve points. These points are transmitted to other signers through the Partially Signed Bitcoin Transactions (PSBTs). These nonces require careful handling for accuracy and integrity in the process, but secure storage is not necessary since they are not confidential information. If all the individuals partial signatures are valid, then the produced Schnorr signatures are valid.

Sljedeći koraci za implementaciju

Prošli mjesec, Andy Chow put forward two BIP drafts, MuSig2 PSBTs i MuSig2 Descriptors, which are a necessary step in MuSig2 adoption and wallet integration. The first BIP adds fields for the nonces, public keys, and partial signatures in the PSBTs, and the second BIP provides a method for describing transaction outputs that are controlled by a MuSig2 wallet. Together, these BIPs and specifications are all we need for integration of MuSig2 wallets!

Many wallet developers and collaborative custody rješenja have long requested this standardization of the MuSig2 protocol. Now, with the formalized BIPs in place, it's in the community's hands to review, give feedback, and help raise awareness. At Blockstream, we look forward to participating in the public discussions and letting the formal BIP review process take place.

This is a guest post by Kiara Bickers. Opinions expressed are entirely their own and do not necessarily reflect those of BTC Inc or Bitcoin Časopis.

Izvorni izvor: Bitcoin Časopis