F might be Poseidon.

Signed-off-by: Daira Hopwood <daira@jacaranda.org>
This commit is contained in:
Daira Hopwood 2021-01-21 00:07:21 +00:00
parent db071913b6
commit 265ff91cc6
1 changed files with 1 additions and 1 deletions

View File

@ -5,7 +5,7 @@ The nullifier design we use for Orchard is
$$\mathsf{nf} = [F_{\mathsf{nk}}(\rho) + \psi \pmod{p}] \mathcal{G} + \mathsf{cm},$$
where:
- $F$ is a keyed circuit-efficient PRF (such as Rescue).
- $F$ is a keyed circuit-efficient PRF (such as Rescue or Poseidon).
- $\rho$ is unique to this output. As with $\mathsf{h_{Sig}}$ in Sprout, $\rho$ includes
the nullifiers of any Orchard notes being spent in the same action. Given that an action
consists of a single spend and a single output, we set $\rho$ to be the nullifier of the