NODE d64c417fRe: Is Chaum's System Traceable or Untraceable?
"E. ALLEN SMITH" <EALLENSMITH@ocelot.Rutgers.EDU>Sat, 25 May 1996 11:49:40 +0800
From: IN%"iang@cs.berkeley.edu" 23-MAY-1996 13:56:31.71
>Ah. I see I was misunderstood. The goal was not to make the shop anonymous,
>but rather to be able to provide change to an anonymous payer.
I had thought that the basic purpose of the fully anon system was just
that - full anonymnity for payer and payee. Under your suggestion, the shop
gives up this anonymnity under these circumstances in order to be able to make
change. I'm not sure if I would call that a very good tradeoff...
-Allen
NODE eb6d3774Re: Is Chaum's System Traceable or Untraceable?
snow <snow@smoke.suba.com>Sat, 25 May 1996 16:24:13 +0800
On Fri, 24 May 1996, E. ALLEN SMITH wrote:
> From: IN%"iang@cs.berkeley.edu" 23-MAY-1996 13:56:31.71
>
> >Ah. I see I was misunderstood. The goal was not to make the shop anonymous,
> >but rather to be able to provide change to an anonymous payer.
>
> I had thought that the basic purpose of the fully anon system was just
> that - full anonymnity for payer and payee. Under your suggestion, the shop
> gives up this anonymnity under these circumstances in order to be able to make
> change. I'm not sure if I would call that a very good tradeoff...
Howzabout this: Figure out about how many coins of each denom. the
shop should have on hand, and every so often the shop goes online to even
out it's til. That way the shop maintains the capability to make change
for anything.
Alternative: Instead of the shop going online every <x> minutes,
set it up so that everytime the shop goes online it evens out the til so
that it really isn't know whether the shop went online to make change for
a specific customer, or just to even out the til.
Petro, Christopher C.
petro@suba.com <prefered for any non-list stuff>
snow@crash.suba.com
NODE 0e9ef86cRe: Is Chaum's System Traceable or Untraceable?
iang@cs.berkeley.edu (Ian Goldberg)Wed, 29 May 1996 10:07:57 +0800
-----BEGIN PGP SIGNED MESSAGE-----
In article <01I53GAYSQUC8Y4Z90@mbcl.rutgers.edu>,
E. ALLEN SMITH <EALLENSMITH@ocelot.Rutgers.EDU> wrote:
>From: IN%"iang@cs.berkeley.edu" 23-MAY-1996 13:56:31.71
>
>>Ah. I see I was misunderstood. The goal was not to make the shop anonym=
ous,
>>but rather to be able to provide change to an anonymous payer.
>
> I had thought that the basic purpose of the fully anon system was just
>that - full anonymnity for payer and payee. Under your suggestion, the shop
>gives up this anonymnity under these circumstances in order to be able to =
make
>change. I'm not sure if I would call that a very good tradeoff...
> -Allen
Yes, that's the _basic_ purpose, but the "anon" protocol has several
useful "secondary" properties as well. This (providing change to an
anonymous payer) is one of them.
- Ian
-----BEGIN PGP SIGNATURE-----
Version: 2.6.2
iQCVAwUBMatj1kZRiTErSPb1AQH0PQP/U6SvqgUew4oDQjo5U4mRJurDm0Co+3va
YCQ6TvqfkkvQDMu3HtFqolBKa6CAhJXz3RFq1mEV50F/VvafD45Utui6btH4JSCh
1xljSeGO6aF7cFW5NhSe/r8oW1IkwQbb6vkJRZQlt2fYr1qTjYp2+PmJsHXbIqk+
z1aV/VYiJdI=
=r7eJ
-----END PGP SIGNATURE-----
NODE 92b3476fRe: Is Chaum's System Traceable or Untraceable?
iang@cs.berkeley.edu (Ian Goldberg)Wed, 29 May 1996 10:18:32 +0800
-----BEGIN PGP SIGNED MESSAGE-----
In article <Pine.LNX.3.93.960524230954.96A-100000@smoke.suba.com>,
snow <snow@smoke.suba.com> wrote:
>On Fri, 24 May 1996, E. ALLEN SMITH wrote:
>
>> From: IN%"iang@cs.berkeley.edu" 23-MAY-1996 13:56:31.71
>>
>> >Ah. I see I was misunderstood. The goal was not to make the shop anonymous,
>> >but rather to be able to provide change to an anonymous payer.
>>
>> I had thought that the basic purpose of the fully anon system was just
>> that - full anonymnity for payer and payee. Under your suggestion, the shop
>> gives up this anonymnity under these circumstances in order to be able to make
>> change. I'm not sure if I would call that a very good tradeoff...
>
> Howzabout this: Figure out about how many coins of each denom. the
>shop should have on hand, and every so often the shop goes online to even
>out it's til. That way the shop maintains the capability to make change
>for anything.
> Alternative: Instead of the shop going online every <x> minutes,
>set it up so that everytime the shop goes online it evens out the til so
>that it really isn't know whether the shop went online to make change for
>a specific customer, or just to even out the til.
>
>
But then the shop, having seen the coins before, can collude with the bank
to identify the customer! The point of this use of the "anon" protocol
is that the shop, throughout the transaction, never sees the coin it
uses to provide change to the customer.
- Ian
-----BEGIN PGP SIGNATURE-----
Version: 2.6.2
iQCVAwUBMatkxUZRiTErSPb1AQEoJQQAqNnLZZybaB45yci7wiHI7fXX/tjEKc2n
riAJ0TV/Ensuzan7KxYYQSyxvtBnZS5LxDM/pq25zh66WHgzVs4ocJPIuBLl/8Qz
ITeIEKTuZ+ZwoyR0oPfO/73wPO4j7fNmShQ0sC/Hx4s2C4zX3I+9buegiSX24ded
883j6nY357o=
=drwL
-----END PGP SIGNATURE-----