Merge ElementsProject/secp256k1-zkp#158: Small musig improvements
d895b10c18musig: mention musig.md in example (Jonas Nick)588009d26fmusig: improve doc of partial_sig_verify regarding signing sessions (Jonas Nick)b1094953c4musig: remove superfluous comment (Jonas Nick) Pull request description: ACKs for top commit: robot-dreams: ACKd895b10c18real-or-random: ACKd895b10c18Tree-SHA512: 35169240868500bb27e5a6b8779f090d3f33a6c0cb1a4574e6e53e9c52782f454fe7df6d49b68e0acdd174e25a756bf6267339f0d4e94f28d5ae49145f21e298
This commit is contained in:
@@ -673,13 +673,6 @@ int secp256k1_musig_partial_sig_verify(const secp256k1_context* ctx, const secp2
|
||||
secp256k1_musig_keyaggcoef(&mu, &cache_i, &pkp.x);
|
||||
secp256k1_scalar_mul(&e, &session_i.challenge, &mu);
|
||||
|
||||
/* If the MuSig-aggregate point has an odd Y coordinate, the signers will
|
||||
* sign for the negation of their individual xonly public key. If the
|
||||
* aggregate key is untweaked, then internal_key_parity is 0, so `e` is
|
||||
* negated exactly when the aggregate key parity is odd. If the aggregate
|
||||
* key is tweaked, then negation happens when the aggregate key has an odd Y
|
||||
* coordinate XOR the internal key has an odd Y coordinate.*/
|
||||
|
||||
/* When producing a partial signature, signer i uses a possibly
|
||||
* negated secret key:
|
||||
*
|
||||
|
||||
Reference in New Issue
Block a user