Andrew Poelstra: All right, so maybe I should start by saying that my talk this morning had a bit of an ulterior motive there. I mean you assume and for the purpose of papers here in this idealized model where you assume the source of the randomness. In this case Dr Schnorr personally. How are we going to get consensus?

ECDSA uses elliptic curves in the context of a finite field, which greatly changes their appearance but not their underlying equations or special properties. Bitcoin can only function because of the clever mathematics which is in the background enabling it to exist.

This is the only way that new Bitcoins are created. I think 11 or 15 of them need to… Following the rules of the system, they need to sign off that the rules of the system were followed moving coins off of Liquid into Bitcoin.

Peter McCormack: Is that a lot of your work at the kind, on fungibility then.

function like sha, this is so close to randomness that no one has been able to detect a meaningful deviation from uniform. Peter McCormack: Wow. In practice, computation of the public key is broken

into a number of point doubling and point addition operations starting from the base point. This is offset by what is called a "Difficulty Adjustment", where the 'hash' random generated number that is required to solve the block is adjusted — this occurs every blocks 14 days. We basically write a draft of what will become a BIP. When you multiply with thetotal blocks per halving cycle, you get 21 million BTC. So the progression into cryptography is actually kind of interesting. A disproportionately large number of blocks are mined by pools rather than by individual miners.

