Fixes #173 by @dev0x1.
Now the challenge hashes c and cv in ProofGen and ProofVerify are computed as hash_to_scalar((PK || A' || Abar || D || C1 || C2 || ph), 1), to keep the ordering of the proof.
The other minor fix is to follow the new notation introduced in #175 and use Identity_GT instead of 1 in Verify.
Fixes #173 by @dev0x1. Now the challenge hashes
c
andcv
inProofGen
andProofVerify
are computed ashash_to_scalar((PK || A' || Abar || D || C1 || C2 || ph), 1)
, to keep the ordering of the proof.The other minor fix is to follow the new notation introduced in #175 and use
Identity_GT
instead of1
inVerify
.