Bitcoin Forum
May 28, 2024, 02:54:34 AM *
News: Latest Bitcoin Core release: 27.0 [Torrent]
 
   Home   Help Search Login Register More  
Poll
Question: offline / frozen addresses
Want
May be
what?
No thanks

Pages: « 1 [2] 3 »  All
  Print  
Author Topic: offline address - or a way to explicitly freeze an address  (Read 2535 times)
btcusr (OP)
Sr. Member
****
Offline Offline

Activity: 405
Merit: 255


@_vjy


View Profile
February 28, 2013, 05:45:00 AM
 #21

tl;dr: No.

Simply,

 - an address can be frozen for spending
 - can keep one address without worrying about loss of its primary key
 - first primary key is protected by second primary which can be changed as and when required
 - second primary key is only used for lock / unlock (freeze / unfreeze) first address

It is not the same as m*n key because,

  - with m*n, address keep changing, so cannot use one address for all transactions

DannyHamilton
Legendary
*
Offline Offline

Activity: 3402
Merit: 4656



View Profile
February 28, 2013, 07:04:38 AM
 #22

The stuff you're saying doesn't make sense.  I simply can't take anything you say seriously if you can't explain it in a way that makes sense.  Either you don't understand how bitcoin works, or I don't understand what you are suggesting. (Maybe both?)
btcusr (OP)
Sr. Member
****
Offline Offline

Activity: 405
Merit: 255


@_vjy


View Profile
February 28, 2013, 07:37:19 AM
 #23

The stuff you're saying doesn't make sense.  I simply can't take anything you say seriously if you can't explain it in a way that makes sense.  Either you don't understand how bitcoin works, or I don't understand what you are suggesting. (Maybe both?)

Ok, here's an example,

Let's say you own firstbits address, '1Hamilton'. You spent lot of time, effort and money to generate it and you are happy to use this address for all your transactions.

At some point of time, you doubt your firstbits private key was stolen / compromised. Now only option for you is to stop using it. Would that be OK for you?

How about satoshi loosing his, firstbits '1'?

You got the problem now? Smiley

DannyHamilton
Legendary
*
Offline Offline

Activity: 3402
Merit: 4656



View Profile
February 28, 2013, 08:14:02 AM
 #24

Ok, here's an example,
- snip -
You got the problem now? Smiley

Yes, I've understood that you have a sentimental attachment to a random string of letters and numbers that happens to match a particular pattern that you like.  I've also understood that you are concerned about the private key associated with that string of characters being compromised.  This isn't the part that I don't understand.

The part I don't understand is how you think you can "freeze" an address without "lots of code changes" and why you think "surely it wouldn't require a hard fork".  I also don't understand why you think that "address keep changing" with 2-of-2 multisig.
Dabs
Legendary
*
Offline Offline

Activity: 3416
Merit: 1912


The Concierge of Crypto


View Profile
February 28, 2013, 08:25:31 AM
 #25

No one else will do it. Not one of the main developers will also do it, when it's as easy as using a brand new or different address. Any address that can receive coins will be able to spend it if you have the private key.

btcusr (OP)
Sr. Member
****
Offline Offline

Activity: 405
Merit: 255


@_vjy


View Profile
February 28, 2013, 09:16:10 AM
 #26

> The part I don't understand is how you think
 > you can "freeze" an address without "lots of
 > code changes"

Frozen or not is just 1 bit detail, I hope this is possible through 'script'ing, so requires zero or minimal change. Just we need to check whether address is frozen before proceeding with sign validation. Yet, I am not very sure.

> why you think "surely it wouldn't require a
> hard fork".

I am suggesting that this can be implemented as specialized freeze/unfreeze transaction, or through a new flag in usual transactions. Either ways, this is going to be a new transaction with a fee. We are not going to redo all the hashing from Genesis block.

> I also don't understand why you think that
> "address keep changing" with 2-of-2
> multisig.

This again for the emotional attachment with the random bits. I want to include compromised address as one of multisig address. Now, I have to let everyone know my new address. When this address gets compromised, or every time I want to use different key to sign, then I have to create another multisig address.

This way also, I cannot use one address forever.

btcusr (OP)
Sr. Member
****
Offline Offline

Activity: 405
Merit: 255


@_vjy


View Profile
February 28, 2013, 09:24:14 AM
 #27

And, don't worry. I am not trying to give someone else the authority to freeze all your addresses. If they can freeze your address, then they also can also spend your money. Means, you need original private key to freeze an address.

DannyHamilton
Legendary
*
Offline Offline

Activity: 3402
Merit: 4656



View Profile
February 28, 2013, 09:35:19 AM
 #28

Yet, I am not very sure.

This much is now very clear to me.

Frozen or not is just 1 bit detail, I hope this is possible through 'script'ing, so requires zero or minimal change.

The "script" that is used in a bitcoin transaction describes what is required to spend the transaction. How can this be used to lock and unlock an address?

Just we need to check whether address is frozen before proceeding with sign validation.

Easy to say. As far as I know, impossible to do without a "hard fork". Do you know of a method that would avoid a "hard fork" that you haven't described yet?

I am suggesting that this can be implemented as specialized freeze/unfreeze transaction, or through a new flag in usual transactions.

Which would require a "hard fork" as far as I know. Do you know of a method that would avoid a "hard fork" that you haven't described yet?

We are not going to redo all the hashing from Genesis block.

Nobody said anything about hashing from the Genisis block.  Perhaps you don't understand what a "hard fork" is?

This again for the emotional attachment with the random bits. I want to include compromised address as one of multisig address. Now, I have to let everyone know my new address. When this address gets compromised, or every time I want to use different key to sign, then I have to create another multisig address.

Ok, I think I see your concern with multisig, but I still don't see how you are going to fix that problem with you "address freezing" process.
K1773R
Legendary
*
Offline Offline

Activity: 1792
Merit: 1008


/dev/null


View Profile
February 28, 2013, 09:44:53 AM
 #29

just use Armory, can even be the same wallet (then u have to use Coin Control) Wink

[GPG Public Key]
BTC/DVC/TRC/FRC: 1K1773RbXRZVRQSSXe9N6N2MUFERvrdu6y ANC/XPM AK1773RTmRKtvbKBCrUu95UQg5iegrqyeA NMC: NK1773Rzv8b4ugmCgX789PbjewA9fL9Dy1 LTC: LKi773RBuPepQH8E6Zb1ponoCvgbU7hHmd EMC: EK1773RxUes1HX1YAGMZ1xVYBBRUCqfDoF BQC: bK1773R1APJz4yTgRkmdKQhjhiMyQpJgfN
btcusr (OP)
Sr. Member
****
Offline Offline

Activity: 405
Merit: 255


@_vjy


View Profile
February 28, 2013, 03:26:55 PM
 #30


> The "script" that is used in a bitcoin transaction describes
> what is required to spend the transaction. How can
> this be used to lock and unlock an address?

the same way how script spends coins.

verify unlock signature, unlock, verify spend signature, spend

or, something similar to that.

btcusr (OP)
Sr. Member
****
Offline Offline

Activity: 405
Merit: 255


@_vjy


View Profile
February 28, 2013, 03:44:05 PM
 #31

Would like to end this thread, as I figure out implementation further.  Smiley
your suggestions always welcome.

DannyHamilton
Legendary
*
Offline Offline

Activity: 3402
Merit: 4656



View Profile
February 28, 2013, 03:55:16 PM
 #32

Would like to end this thread, as I figure out implementation further.  Smiley
your suggestions always welcome.

Yes. Please end this thread.

Your suggestion of:

the same way how script spends coins.

verify unlock signature, unlock, verify spend signature, spend

or, something similar to that.

offers no improvements over multisig.  You would need to provide anyone who sends you bitcoin with the public key of your "unlock keypair" and they would have to create a transaction that includes that in the "script".  This would only lock that transaction, not the entire address, until the "unlock keypair" was compromised.  Then you would have to send out to everyone another unlock public key, and would have to move all your own old coins to a new transaction using the new unlock keypair.

This is essentially a multisig solution that requires giving out a public key instead of an address?
btcusr (OP)
Sr. Member
****
Offline Offline

Activity: 405
Merit: 255


@_vjy


View Profile
February 28, 2013, 04:10:39 PM
 #33

something like this..  Roll Eyes

Code:
{
  "hash":"...",
  "ver":1,
  "vin_sz":1,
  "vout_sz":2,
  "lock_time":0,
  ...
  "frozen":1,
  ...
}

DannyHamilton
Legendary
*
Offline Offline

Activity: 3402
Merit: 4656



View Profile
February 28, 2013, 04:16:42 PM
 #34

something like this..  Roll Eyes

Code:
{
  "hash":"...",
  "ver":1,
  "vin_sz":1,
  "vout_sz":2,
  "lock_time":0,
  ...
  "frozen":1,
  ...
}

I don't see where the "unfreeze key" is in that example?
btcusr (OP)
Sr. Member
****
Offline Offline

Activity: 405
Merit: 255


@_vjy


View Profile
February 28, 2013, 04:21:16 PM
 #35

something like this..  Roll Eyes

Code:
{
  "hash":"...",
  "ver":1,
  "vin_sz":1,
  "vout_sz":2,
  "lock_time":0,
  ...
  "frozen":1,
  ...
}

I don't see where the "unfreeze key" is in that example?

thats ok, it is just an idea. an incomplete example.

btcusr (OP)
Sr. Member
****
Offline Offline

Activity: 405
Merit: 255


@_vjy


View Profile
February 28, 2013, 04:21:59 PM
 #36

finally, I got 1 more want in the poll. I am happy as if it is implemented.
I will edit first post for clarity. Smiley

casascius
Mike Caldwell
VIP
Legendary
*
Offline Offline

Activity: 1386
Merit: 1136


The Casascius 1oz 10BTC Silver Round (w/ Gold B)


View Profile WWW
February 28, 2013, 04:23:32 PM
 #37

How to freeze your bitcoins:

1. Print a paper wallet at bitaddress.org
2. Send your bitcoins to the address printed on it
3. There is no step 3

Recover your bitcoins later by creating a throwaway Blockchain.info web wallet, importing the paper wallet, and sending the coins to an address of your choice.  You can avoid leaving any unused coins in the web wallet simply by printing a new paper wallet and sending the balance there.

Companies claiming they got hacked and lost your coins sounds like fraud so perfect it could be called fashionable.  I never believe them.  If I ever experience the misfortune of a real intrusion, I declare I have been honest about the way I have managed the keys in Casascius Coins.  I maintain no ability to recover or reproduce the keys, not even under limitless duress or total intrusion.  Remember that trusting strangers with your coins without any recourse is, as a matter of principle, not a best practice.  Don't keep coins online. Use paper or hardware wallets instead.
DannyHamilton
Legendary
*
Offline Offline

Activity: 3402
Merit: 4656



View Profile
February 28, 2013, 04:26:11 PM
 #38

thats ok, it is just an example. an incomplete idea.

FTFY  Wink
btcusr (OP)
Sr. Member
****
Offline Offline

Activity: 405
Merit: 255


@_vjy


View Profile
February 28, 2013, 04:40:37 PM
 #39

How to freeze your bitcoins:

1. Print a paper wallet at bitaddress.org
2. Send your bitcoins to the address printed on it
3. There is no step 3

Recover your bitcoins later by creating a throwaway Blockchain.info web wallet, importing the paper wallet, and sending the coins to an address of your choice.  You can avoid leaving any unused coins in the web wallet simply by printing a new paper wallet and sending the balance there.

@casascius, thanks for your post. finally, I think my post got some attention.
you are one of very few members, I can recognize by profile name. Smiley

now, how would you solve my main problem,

Quote
I want to keep my firstbits address 1vijay, 1visu forever, to receive and spend.

Timo Y
Legendary
*
Offline Offline

Activity: 938
Merit: 1001


bitcoin - the aerogel of money


View Profile
February 28, 2013, 04:42:43 PM
 #40

You can generate an address offline.

As long as you keep the private key secret, nobody can steal the bitcoin.

A frozen address with time-activated release would be far more secure than an offline address.

The requirement to 'keep a private key secret' makes security depend on humans, and humans are fallible.  Best to outsource security to the protocol as much as possible.

I can see lots of real world scenarios where a time-locked address would be useful and an offline address isn't good enough:

(1) A large 'bank' or exchange that has billions of dollars worth of bitcoin in cold storage. Even if the bank assigns multiple signatories to spend those bitcoins, they could be kidnapped and forced to disclose the private key.
(2) A famous rich person who is publicly known to own a lot of bitcoins.  Again, the frozen wallet would discourage kidnappers.
(3) A problem gambler who wants to keep his retirement fund safe from himself.
(4) A single parent who has terminal cancer and greedy relatives, and who wants to leave his bitcoins to his 13-year old child.
(5) A bitcoin enthusiast who lives under a tyrannical regime and fears that the authorities might imprison and torture him in order to obtain his bitcoins.

As bitcoin gains in value and maturity, these kinds of examples are going to gain relevance.

GPG ID: FA868D77   bitcoin-otc:forever-d
Pages: « 1 [2] 3 »  All
  Print  
 
Jump to:  

Powered by MySQL Powered by PHP Powered by SMF 1.1.19 | SMF © 2006-2009, Simple Machines Valid XHTML 1.0! Valid CSS!