diff --git a/i2p2www/spec/tunnel-creation-ecies.rst b/i2p2www/spec/tunnel-creation-ecies.rst index 98dd571c64ca1b11d8d762350e6dd57925ad93e2..71a55d572045763750f6e5940f5152a7e46354e0 100644 --- a/i2p2www/spec/tunnel-creation-ecies.rst +++ b/i2p2www/spec/tunnel-creation-ecies.rst @@ -792,9 +792,7 @@ keydata = HKDF(ck, ZEROLEN, "SMTunnelReplyKey", 64) replyKey = keydata[32:63] ck = keydata[0:31] - Layer key: - Layer key is always AES for now, but same KDF can be used from Chacha20 - + AES Layer key: keydata = HKDF(ck, ZEROLEN, "SMTunnelLayerKey", 64) layerKey = keydata[32:63] @@ -815,6 +813,9 @@ keydata = HKDF(ck, ZEROLEN, "SMTunnelReplyKey", 64) {% endhighlight %} +Note: The KDF for the IV key at the OBEP is different from that for the other hops, +even if the reply is not garlic encrypted. + Record Encryption ```````````````````````