Nitrokey / nitrokey-websmartcard

Nitrokey WebSmartCard Specification and Documentation
29 stars 3 forks source link

How to change KDF or BIP to derive master key in the future? #22

Open jans23 opened 4 years ago

jans23 commented 4 years ago

How could we change the hash algorithm in a later point in time, assuming that different 3rd party implementations exists in the field? We don't have a technical measure to enforce an algorithm update or at least to detect incompatibilities. Perhaps storing the algorithm's identifier in the device would allow to detect incompatibilities. Not sure this is the best solution but I'm brainstorming...