Blockstream dreams up a whole new type of multisig called ROAST

Published at: May 25, 2022

The research unit of Bitcoin (BTC)-focused blockchain tech firm Blockstream has published a proposal for a new type of multisignature standard called Robust Asynchronous Schnorr Threshold Signatures (ROAST).

It hopes to avoid the problem of transaction failures due to absent or even malicious signers and can work at scale.

The term multisig, or multisignature, refers to a method of transaction in which two or more signatures are required to sign off before it can be executed. The standard is widely adopted in crypto.

According to a Wednesday blog post from Blockstream research, the basic idea of ROAST is to make transactions between the Bitcoin network and Blockstream’s sidechain Liquid more efficient, automated, secure and private.

In particular, ROAST has been posited as a signature standard that could work with, and improve, threshold signature schemes such as Flexible Round-Optimized Schnorr Threshold Signatures FROST):

“ROAST is a simple wrapper around threshold signature schemes like FROST. It guarantees that a quorum of honest signers, e.g., the Liquid functionaries, can always obtain a valid signature even in the presence of disruptive signers when network connections have arbitrarily high latency.”

The researchers highlighted that while FROST can be an effective method for signing off on BTC transactions, its structure of coordinators and signers is designed to abort transactions in the presence of absent signers, making it secure but suboptimal for “automated signing software.”

To solve this problem, the researchers say that ROAST can guarantee enough reliable signers on each transaction to avoid any failures. Moreover, it can be done at a scale much larger than the 11-of-15 multisig standard that Blockstream primarily utilizes.

“Our empirical performance evaluation shows that ROAST scales well to large signer groups, e.g., a 67-of-100 setup with the coordinator and signers on different continents,” the post reads, adding that:

“Even with 33 malicious signers that try to block signing attempts (e.g. by sending invalid responses or by not responding at all), the 67 honest signers can successfully produce a signature within a few seconds.”

To provide a simple explanation of how ROAST works, the team used an analogy of a democratic council responsible for the legislation of Frostland.

Essentially, the argument is given that it can be complicated to get legislation (transactions) signed off in Frostland, as there is a myriad of factors at any given time that can result in the majority of council members suddenly being unavailable or absent.

A procedure (ROAST) to counteract this, is for a council secretary to compile and maintain a large enough list of supporting council members (signers) at any given time so that there are always enough members to get legislation through:

“If at least seven council members actually support the bill and behave honestly, then at any point in time, he knows that these seven members will eventually sign their currently assigned copy and be re-added to the secretary’s list.”

“Thus the secretary can always be sure that seven members will be on his list again at some point in the future, and so the signing procedure will not get stuck,” the post adds.

Related: ‘DeFi is not decentralized at all,’ says former Blockstream executive

ROAST is part of a collaboration between Blockstream researchers Tim Ruffing and Elliott Jin, Viktoria Ronge and Dominique Schröder from the University of Erlangen-Nuremberg and Jonas Schneider-Bensch from the CISPA Helmholtz Center for Information Security.

Accompanying the blog post, the researchers also linked to a 13-page research paper which gives a rundown of ROAST in greater detail.

Tags
Related Posts
Blockchain Is a New Frontier According to Top Executives, Investment Levels Plummet
There are mixed indicators regarding the current progress or stalling of blockchain adoption throughout the enterprise world. Research has indicated that investments have dropped by over half over the last year, contrary to other research showing a growing sentiment toward the vitality of blockchain adoption as an innovative technology. For example, Research by CB Insights in 2019 indicates that there may be a separation between corporate adoption and corporate investments into blockchain companies. As reported previously by Cointelegraph, blockchain investments have dropped by up to 60% since 2018. However, this decline does not seem to have affected the positive outlook …
Adoption / Sept. 16, 2019
Unpacking Schnorr Signatures: Blockstream’s MuSig to Improve Bitcoin Transactions?
Following the launch of working code last month, blockchain technology firm Blockstream hopes to successfully develop a new multisignature standard for Bitcoin transactions in the future. Alongside this, Blockstream also released its latest version of its Bitcoin scaling software c-lightning at the beginning of March, marking a busy period for the highly regarded development house. Upgrades to the Bitcoin protocol Historically, potential upgrades to the Bitcoin protocol (BTC) have been a big point of contention since its inception back in 2009. Satoshi Nakamoto’s original Bitcoin white paper is treated as something of a sacred text, and any changes to the …
Blockchain / March 7, 2019
Independent research verifies GBTC's 633K Bitcoin: So why won't Grayscale?
With digital asset management firm Grayscale refusing to provide proof of reserves for its Grayscale Bitcoin Trust (GBTC), an independent analyst has spent days combing through the blockchain to independently verify its holdings. The OXT Research analyst, Ergo, used on-chain forensics to confirm that as of Nov. 23 that the GBTC owns approximately 633,000 Bitcoin (BTC) held by its custodian, Coinbase Custody. The Grayscale G(BTC) Coins Part 2 In this analysis we use additional on-chain forensics to CONFIRM the approximate 633k BTC balance held by G(BTC) at Coinbase Custody. Which begs the question, why does Grayscale refuse to disclose their …
Blockchain / Nov. 25, 2022
The race for semiconductors: Are crypto miners taking the lion's share?
Over the last couple of years, the world has been grappling with the lack of semiconductors, which are the substances that conduct electricity between metals and isolates. The most famous semiconductor is silicon. If correlating this concept to electronic devices, then the key semiconductors are processors and other microcircuits that are present in almost all devices that people use every day, from smartphones to cars. In 2021, semiconductors hit a world record in terms of sales. Electronics production also boomed, with hundreds of millions of complex semiconductors being devoured by gaming consoles. The number of GPUs produced grew to unseen …
Technology / April 7, 2022
Bitcoin advocate criticized for backing wallet authentication project
Crypto Twitter has gone after Nic Carter, a prominent advocate of Bitcoin (BTC), for his involvement in Dynamic, a third-party wallet authentication project that could potentially prevent wallet transactions to be performed if a wallet is categorized as risky. In a tweet, Carter shared his excitement in backing the project, tweeting Dynamic's announcement about a recently completed $7.5 million raise led by Andreessen Horowitz (a16z). Following this, users flocked to Carter’s Twitter, expressing their disappointment because of the move. Twitter user Lifetheuniverce argued that what Dynamic is creating is the “antitheses of what Bitcoin was created for.” The Twitter user …
Blockchain / June 29, 2022