So fido2 definitely possible MPC still to be determined
FROSTR (for now) is just for the individual so we use a trusted dealer setup to make it quick and efficient (also you are not an adversary with yourself so this works great for most nostr users to protect their nsec)
I believe an MPC setup would require a DKG for setting up the quorum so it will be a while before we work on the trustless solutions (for groups) first we solve for the individual!
Hi, I „solved“ it with fido2 not doing signing but gatekeeping the signing process and placed share A into the Secure Enclave of the phone and share B on the Secure Enclave of the server, this way we have no share or signing ever exposed anywhere, not even in RAM, does this sound right to you?
This sounds like it would work but I know one issue (for signing) is whatever process is doing the signing needs to be able to compute on the secp curve. I know iPhone for example does not have libsecp for their secure element
Does any fido2 standards support secp256k1?
Thread collapsed
Thread collapsed