v21 v22 179 179 exponent would allow meetinthemiddle attacks. ECDSA or Ed25519 pubkeys are 180 180 slightly more than 2*K long, so this would increase the length of the readcaps 181 because 2*K > T. The advantage would be simplifying/speeding up the download 182 process. It is highly unlikely that there is any public key algorithm181 relative to the scheme above whenever K > T. The advantage would be simplifying 182 the download process. It is highly unlikely that there is any public key algorithm 183 183 with keys shorter than 2*K for a Kbit security level. Since we can use shorter 184 184 hashes than public keys, the H(pubkey) design above gives us shorter read caps,