PQTS2026-04-15_006

PQ Transaction Signatures #006

2026-04-15 4 decisions 409 transcript lines

Transcript

Call summary

Targets
  • •Two weeks - Next PQTS breakout with Matteo's ephemeral key updates - 00:50:18
Decisions
  • •Lesson learned: NTT/LEGO abstraction approach doesn't work for PQ signatures - 00:14:36
  • •Solidity contracts for PQ verification must be formally verified, not precompiles - 00:43:06
Highlights
  • Strategy Discussion:
    • ·Proposed dual approach: ephemeral keys for low-value, Dilithium for high-value transactions - 00:32:23
    • ·Ephemeral key security concerns: censorship attacks and long mempool times - 00:36:10
    • ·Formal verification critical for Solidity-based PQ signature contracts - 00:42:48
  • Hardware Constraints:
    • ·NIST SLHDSA-24: ~6 minutes signing time on Ledger hardware wallet - 00:27:18
    • ·New NIST parameters still impractical: millions of hashes needed per signature - 00:38:25
    • ·Custom Keccak-based parameters achieve 100-1000x faster signing than NIST proposal - 00:39:14
  • Protocol Developments:
    • ·Frame transaction/native AA no longer headliner for Hegotá fork - 00:04:01
    • ·NIST released limited-use SLHDSA parameters: 2^24 signatures, ~3-4KB size - 00:04:36
  • Implementation Updates:
    • ·Daisugi testnet live: Erigon node with Falcon/Dilithium/ephemeral ECDSA support - 00:06:52
    • ·NTT/LEGO approach requires scheme-specific precompiles; abstraction doesn't work well - 00:14:21
    • ·Direct precompiles much lower gas than NTT, especially Dilithium (~100k difference) - 00:17:41
Action Items
  • •Nico C - Publish EVM-friendly SLHDSA parameter research with Keccak instantiation - 00:40:02
  • •Ethereum Foundation representatives - Send NIST feedback at tomorrow's workshop on hash function crypto-agility - 00:41:23
  • •Simon ZKNOX (future call) - Present full Dilithium ledger integration round-trip demo - 00:50:43

Key decisions

  • Frame transaction/native AA no longer headliner for Hegotá fork

    headlinerFrame transaction and native Account Abstraction were removed as headliner features for the Hegotá fork.
  • Daisugi testnet live: Erigon node with Falcon/Dilithium/ephemeral ECDSA support

    DaisugiThe Daisugi testnet was launched featuring Erigon nodes with support for Falcon, Dilithium, and ephemeral ECDSA.
  • Lesson learned: NTT/LEGO abstraction approach doesn't work for PQ signatures

    The NTT/LEGO approach was found to require scheme-specific precompiles, making abstraction ineffective for Post-Quantum signatures.
  • Solidity contracts for PQ verification must be formally verified, not precompiles

    The group decided that Solidity contracts used for PQ verification require formal verification rather than relying on precompiles.

AI Disclaimer: Some content or metadata on EIPsInsight may be AI-inferred or automatically compiled. If you find any discrepancy, please contact us at dev@avarch.org.