Key rotation is done manually still - you need the threshold of shares within that keyset (2/3 for example) locally in order to recover the nsec, this does not happen over nostr in some fancy protocol manner (only signing does)

shares are only valid within a keyset meaning that if you have a 2/3 and you lose a share IF you destroy the other 2 shares than the third stolen share is ORPHANED.

So to rotate at this time the steps are:

- Recover nsec with threshold of shares

- Use that nsec to generate a new keyset (can be any threshold)

- DESTROY the shares in the old keyset

TLDR; DESTROY AND OPRHAN

nostr:nevent1qvzqqqqqqypzq96n3hp2vfmf6z2y8uvvxl97xk86kkalnqghx4p25lzl79c76a7yqyg8wumn8ghj7mn09eehgu3wvdez7qgwwaehxw309ahx7uewd3hkctcqyqjzk3j9jx67m3x65fcglp3efu6cylazsw40g3h8jzu5kz6c0u396l77xua

Reply to this note

Please Login to reply.

Discussion

No replies yet.