04:00:22
kiersten5821:matrix.org:
the binary monero-gen-trusted-multisig is not working. is this a known issue?
04:00:24
kiersten5821:matrix.org:
```
04:00:26
kiersten5821:matrix.org:
./monero-gen-trusted-multisig --scheme=5/6 --filename-base test
04:00:28
kiersten5821:matrix.org:
This program generates a set of multisig wallets - use this simpler scheme only if all the participants trust each other
04:00:30
kiersten5821:matrix.org:
Monero 'Fluorine Fermi' (v0.18.4.5-release)
04:00:32
kiersten5821:matrix.org:
Logging to ./monero-gen-trusted-multisig.log
04:00:34
kiersten5821:matrix.org:
Generating 6 5/6 multisig wallets
04:00:36
kiersten5821:matrix.org:
Enter password for new multisig wallets:
04:00:38
kiersten5821:matrix.org:
Confirm password:
04:00:40
kiersten5821:matrix.org:
Error: Error creating multisig wallets: Messages don't have the expected kex round number.
04:00:42
kiersten5821:matrix.org:
```
04:02:04
kiersten5821:matrix.org:
5/6, 3/4, 2/3, all do not work
04:04:41
kiersten5821:matrix.org:
not a big deal as i will make it manually but this is super annoying
04:04:51
kiersten5821:matrix.org:
even 3/4 required like 4 rounds of copy pasting stuff
04:22:38
ofrnxmr:xmr.mx:
Yeah seems to be broken
04:22:56
ofrnxmr:xmr.mx:
According to log, it isnt even connecting to my daemon
04:36:00
kiersten5821:matrix.org:
surprisingly it worked on a 2/2
04:40:29
ofrnxmr:xmr.mx:
Confirmed
04:42:50
kiersten5821:matrix.org:
shoudl open an issue for this
04:43:11
kiersten5821:matrix.org:
shoudl open an issue for this, i need to make a gh acc
04:44:55
ofrnxmr:xmr.mx:
Im checking some older versions to see when it last worked
04:45:14
torir:matrix.org:
Github can shadowban if you sign up with a VPN, so check while signed out to see if your issue is actually visible to others.
04:58:07
ofrnxmr:xmr.mx:
17.3.2 fails with diff error "Error: Error creating multisig wallets: Kex message unexpectedly empty."
04:58:38
ofrnxmr:xmr.mx:
18.0.0 : "Error: Error creating multisig wallets: Messages don't have the expected kex round number."
05:02:40
ofrnxmr:xmr.mx:
17.0.0 works
05:07:22
ofrnxmr:xmr.mx:
I imagine this is culprit https://github.com/monero-project/monero/pull/8190
05:10:14
ofrnxmr:xmr.mx:
Landed in 17.3.2
05:15:20
ofrnxmr:xmr.mx:
cc vtnerd @rbrunner7:monero.social https://github.com/monero-project/monero/pull/7877
06:10:37
rbrunner7:monero.social:
Without checking anything, I don't think that something in the `wallet2` multisig code is the culprit. If there was something fundamentally wrong in there regarding creating multisig wallets in the latest code, I am pretty sure we would know already for a long time. What I suspect is that `monero-gen-trusted-multisig` doesn't use the updated / modified API correctly, or in other w<clipped message>
06:10:37
rbrunner7:monero.social:
ords, is waiting for a modification that became necessary because of that. I am not sure, but I think the MMS isn't able to create wallets anymore either, for maybe a very similar reason.
06:11:35
ofrnxmr:monero.social:
It worked up til 17.3.2
06:12:12
ofrnxmr:monero.social:
And post 17.3.2, it only works for 3/3 4/4 etc wallets. Not threshhold like 2/3 or 3/4
06:12:43
ofrnxmr:monero.social:
The only related change i see, is the linked pr that modified kex
06:15:01
ofrnxmr:monero.social:
But yeah. I dont think its multisig code, just bug or incompatability introduced from that pr. Generating musig wallets manually works ofc
11:51:05
plowsof:matrix.org:
kiersten: you asked if an outside observer can tell exactly who signed the multisig transaction - this would remove an attractive amount of plausible deniability for those in a 2 of N wallet
14:43:30
kiersten5821:matrix.org:
what about an inside observer? that is helpful still
21:50:46
anamoly424:matrix.org:
Hello,
21:50:47
anamoly424:matrix.org:
I have a bug for monero-oxide ( https://github.com/monero-oxide/monero-oxide ) that comes under :
21:50:49
anamoly424:matrix.org:
"High
21:50:51
anamoly424:matrix.org:
Incompatibilities with the targeted Monero consensus protocol which would require reimplementing notable sections of monero-oxide"
21:50:53
anamoly424:matrix.org:
on immunefi, but, I CANNOT use immunefi because it needs an ID/KYC for new accounts to submit bugs. How can I contact monero-oxide other than immunefi, submit the bug with POC and proof and get the bounty ?
22:00:18
anamoly424:matrix.org:
Also, the reason I am asking it here is the : page states that
22:00:19
anamoly424:matrix.org:
"Bugs which cause panics, or a similar denial-of-service, are to be reported to the administrators (via Matrix) and the affected downstream projects (again via their stated disclosure methods).
22:00:21
anamoly424:matrix.org:
A public disclosure will only occur once monero-oxide releases a fix."
22:00:23
anamoly424:matrix.org:
and
22:00:25
anamoly424:matrix.org:
"All affected projects should be privately disclosed to via their stated disclosure method (or any private means of communication upon lack of stated disclosure method)."
22:00:27
anamoly424:matrix.org:
Also as I said before it comes under scope listed in immunefi and for very obvious reasons immunefi has made it as hard as possible for people to report bugs so i cannot do it via that either
22:04:04
kayabanerve:matrix.org:
Anamoly: Please open a GH security advisory or less preferable, message a maintainer of monero-oxide, such as myself, on Matrix.
22:04:55
anamoly424:matrix.org:
There aren’t any published security advisories, I am messaging you right now though
22:08:38
kayabanerve:matrix.org:
You're able to submit security issues via GitHub for repositories which have enabled it. We have for monero-oxide Anamoly:
22:08:59
kayabanerve:matrix.org:
https://github.com/monero-oxide/monero-oxide/security
22:09:13
kayabanerve:matrix.org:
"Report a vulnerability" is a button to do exactly that
22:09:44
anamoly424:matrix.org:
https://matrix.monero.social/_matrix/media/v1/download/matrix.org/sOuDMFBOCRhjvoDVDClLzfeC
22:10:12
anamoly424:matrix.org:
its not letting me submit it..
22:11:02
anamoly424:matrix.org:
the button it just shows a cross on my mouse and isnt enabled when i try
22:12:00
kayabanerve:matrix.org:
Fascinating. I have no idea then. Messaging me is justified, feel free to do so.
22:12:19
anamoly424:matrix.org:
Yes, I have sent you a message
22:12:21
kayabanerve:matrix.org:
(I'd prefer GH as then it'd auto-sub boog900 but we'll manage)
22:12:29
ack-j:matrix.org:
The button works on my account FWIW