On 3/7/19 9:11 PM, Hal Murray wrote: > The draft suggests a way to derive the next key from the current key. I thought there was a rough consensus here to avoid that, using fully-random keys each time. -- Richard