aboutsummaryrefslogtreecommitdiff
diff options
context:
space:
mode:
authorpukkamustard <pukkamustard@posteo.net>2020-12-07 09:16:29 +0100
committerpukkamustard <pukkamustard@posteo.net>2020-12-07 09:16:29 +0100
commit88c54329c1f7357941ae3a4bac49847c022c9803 (patch)
tree52766669014d2b5ce734ecebe3406a01b44c41c9
parentf5813d3a9b3b33ea5edd01167c486b7f4d43f034 (diff)
release: v0.2.0
-rw-r--r--ROADMAP2
-rw-r--r--doc/eris.adoc8
-rw-r--r--public/eris-v0.2.0.html1900
-rw-r--r--public/index.html13
4 files changed, 1915 insertions, 8 deletions
diff --git a/ROADMAP b/ROADMAP
index b9fa4f9..73c7b88 100644
--- a/ROADMAP
+++ b/ROADMAP
@@ -1,7 +1,7 @@
-*- mode: org; coding: utf-8; -*-
#+TITLE: ERIS Roadmap
-* 0.2.0 (late 2020)
+* DONE 0.2.0 (late 2020)
- Second version of encoding and specification document for wider circulation and collecting feedback.
- Guile implementation usable as library for experimentation
diff --git a/doc/eris.adoc b/doc/eris.adoc
index 2c70395..7c31de3 100644
--- a/doc/eris.adoc
+++ b/doc/eris.adoc
@@ -1,6 +1,6 @@
= Encoding for Robust Immutable Storage (ERIS)
pukkamustard <pukkamustard@posteo.net>
-0.2.0-draft
+0.2.0, 2020-12-07
:toc: left
:xrefstyle: short
:sectnums:
@@ -496,8 +496,10 @@ Development of ERIS has been supported by the https://nlnet.nl[NLNet Foundation]
:sectnums!:
== Changelog
+The most recent version is published at http://purl.org/eris.
+
[discrete]
-=== http://purl.org/eris[v0.2.0-draft (UNRELEASED)]
+=== link:eris-v0.2.0.html[v0.2.0 (7. December 2020)]
Major update of encoding that removes the _verification capability_ - ability to verify integrity of content without reading content.
@@ -532,7 +534,7 @@ This work is licensed under a http://creativecommons.org/licenses/by-sa/4.0/[Cre
- [[[MLS]]] Omara, et al., https://messaginglayersecurity.rocks/mls-architecture/draft-ietf-mls-architecture.html[The Messaging Layer Security (MLS) Architecture (DRAFT)], 2020.
- [[[OMEMO]]] Straub, et al., https://xmpp.org/extensions/xep-0384.html[XEP-0384: OMEMO Encryption], 2020.
- [[[Polleres2020]]] Polleres, et al., https://epub.wu.ac.at/6371/1/IPM_workingpaper_02_2018.pdf[A more decentralized vision for Linked Data], 2020.
-- [[[RDF-Signify]]] pukkamustard, https://openengiadina.net/papers/rdf-signify.html[RDF Signify], 2020.
+- [[[RDF-Signify]]] pukkamustard, http://purl.org/signify/spec[RDF Signify], 2020.
- [[[RFC7927]]] Kutscher et. al. https://tools.ietf.org/html/rfc7927[Information-Centric Networking (ICN) Research Challenges], 2016.
- [[[Zooko2008]]] Zooko Wilcox-O'Hearn. https://tahoe-lafs.org/hacktahoelafs/drew_perttula.html[Drew Perttula and Attacks on Convergent Encryption], 2008.
diff --git a/public/eris-v0.2.0.html b/public/eris-v0.2.0.html
new file mode 100644
index 0000000..9c60666
--- /dev/null
+++ b/public/eris-v0.2.0.html
@@ -0,0 +1,1900 @@
+<!DOCTYPE html>
+<html lang="en">
+<head>
+<meta charset="UTF-8">
+<meta http-equiv="X-UA-Compatible" content="IE=edge">
+<meta name="viewport" content="width=device-width, initial-scale=1.0">
+<meta name="generator" content="Asciidoctor 2.0.10">
+<meta name="author" content="pukkamustard">
+<title>Encoding for Robust Immutable Storage (ERIS)</title>
+<style>
+/* Asciidoctor default stylesheet | MIT License | https://asciidoctor.org */
+/* Uncomment @import statement to use as custom stylesheet */
+/*@import "https://fonts.googleapis.com/css?family=Open+Sans:300,300italic,400,400italic,600,600italic%7CNoto+Serif:400,400italic,700,700italic%7CDroid+Sans+Mono:400,700";*/
+article,aside,details,figcaption,figure,footer,header,hgroup,main,nav,section{display:block}
+audio,video{display:inline-block}
+audio:not([controls]){display:none;height:0}
+html{font-family:sans-serif;-ms-text-size-adjust:100%;-webkit-text-size-adjust:100%}
+a{background:none}
+a:focus{outline:thin dotted}
+a:active,a:hover{outline:0}
+h1{font-size:2em;margin:.67em 0}
+abbr[title]{border-bottom:1px dotted}
+b,strong{font-weight:bold}
+dfn{font-style:italic}
+hr{-moz-box-sizing:content-box;box-sizing:content-box;height:0}
+mark{background:#ff0;color:#000}
+code,kbd,pre,samp{font-family:monospace;font-size:1em}
+pre{white-space:pre-wrap}
+q{quotes:"\201C" "\201D" "\2018" "\2019"}
+small{font-size:80%}
+sub,sup{font-size:75%;line-height:0;position:relative;vertical-align:baseline}
+sup{top:-.5em}
+sub{bottom:-.25em}
+img{border:0}
+svg:not(:root){overflow:hidden}
+figure{margin:0}
+fieldset{border:1px solid silver;margin:0 2px;padding:.35em .625em .75em}
+legend{border:0;padding:0}
+button,input,select,textarea{font-family:inherit;font-size:100%;margin:0}
+button,input{line-height:normal}
+button,select{text-transform:none}
+button,html input[type="button"],input[type="reset"],input[type="submit"]{-webkit-appearance:button;cursor:pointer}
+button[disabled],html input[disabled]{cursor:default}
+input[type="checkbox"],input[type="radio"]{box-sizing:border-box;padding:0}
+button::-moz-focus-inner,input::-moz-focus-inner{border:0;padding:0}
+textarea{overflow:auto;vertical-align:top}
+table{border-collapse:collapse;border-spacing:0}
+*,*::before,*::after{-moz-box-sizing:border-box;-webkit-box-sizing:border-box;box-sizing:border-box}
+html,body{font-size:100%}
+body{background:#fff;color:rgba(0,0,0,.8);padding:0;margin:0;font-family:"Noto Serif","DejaVu Serif",serif;font-weight:400;font-style:normal;line-height:1;position:relative;cursor:auto;tab-size:4;-moz-osx-font-smoothing:grayscale;-webkit-font-smoothing:antialiased}
+a:hover{cursor:pointer}
+img,object,embed{max-width:100%;height:auto}
+object,embed{height:100%}
+img{-ms-interpolation-mode:bicubic}
+.left{float:left!important}
+.right{float:right!important}
+.text-left{text-align:left!important}
+.text-right{text-align:right!important}
+.text-center{text-align:center!important}
+.text-justify{text-align:justify!important}
+.hide{display:none}
+img,object,svg{display:inline-block;vertical-align:middle}
+textarea{height:auto;min-height:50px}
+select{width:100%}
+.center{margin-left:auto;margin-right:auto}
+.stretch{width:100%}
+.subheader,.admonitionblock td.content>.title,.audioblock>.title,.exampleblock>.title,.imageblock>.title,.listingblock>.title,.literalblock>.title,.stemblock>.title,.openblock>.title,.paragraph>.title,.quoteblock>.title,table.tableblock>.title,.verseblock>.title,.videoblock>.title,.dlist>.title,.olist>.title,.ulist>.title,.qlist>.title,.hdlist>.title{line-height:1.45;color:#7a2518;font-weight:400;margin-top:0;margin-bottom:.25em}
+div,dl,dt,dd,ul,ol,li,h1,h2,h3,#toctitle,.sidebarblock>.content>.title,h4,h5,h6,pre,form,p,blockquote,th,td{margin:0;padding:0;direction:ltr}
+a{color:#2156a5;text-decoration:underline;line-height:inherit}
+a:hover,a:focus{color:#1d4b8f}
+a img{border:0}
+p{font-family:inherit;font-weight:400;font-size:1em;line-height:1.6;margin-bottom:1.25em;text-rendering:optimizeLegibility}
+p aside{font-size:.875em;line-height:1.35;font-style:italic}
+h1,h2,h3,#toctitle,.sidebarblock>.content>.title,h4,h5,h6{font-family:"Open Sans","DejaVu Sans",sans-serif;font-weight:300;font-style:normal;color:#ba3925;text-rendering:optimizeLegibility;margin-top:1em;margin-bottom:.5em;line-height:1.0125em}
+h1 small,h2 small,h3 small,#toctitle small,.sidebarblock>.content>.title small,h4 small,h5 small,h6 small{font-size:60%;color:#e99b8f;line-height:0}
+h1{font-size:2.125em}
+h2{font-size:1.6875em}
+h3,#toctitle,.sidebarblock>.content>.title{font-size:1.375em}
+h4,h5{font-size:1.125em}
+h6{font-size:1em}
+hr{border:solid #dddddf;border-width:1px 0 0;clear:both;margin:1.25em 0 1.1875em;height:0}
+em,i{font-style:italic;line-height:inherit}
+strong,b{font-weight:bold;line-height:inherit}
+small{font-size:60%;line-height:inherit}
+code{font-family:"Droid Sans Mono","DejaVu Sans Mono",monospace;font-weight:400;color:rgba(0,0,0,.9)}
+ul,ol,dl{font-size:1em;line-height:1.6;margin-bottom:1.25em;list-style-position:outside;font-family:inherit}
+ul,ol{margin-left:1.5em}
+ul li ul,ul li ol{margin-left:1.25em;margin-bottom:0;font-size:1em}
+ul.square li ul,ul.circle li ul,ul.disc li ul{list-style:inherit}
+ul.square{list-style-type:square}
+ul.circle{list-style-type:circle}
+ul.disc{list-style-type:disc}
+ol li ul,ol li ol{margin-left:1.25em;margin-bottom:0}
+dl dt{margin-bottom:.3125em;font-weight:bold}
+dl dd{margin-bottom:1.25em}
+abbr,acronym{text-transform:uppercase;font-size:90%;color:rgba(0,0,0,.8);border-bottom:1px dotted #ddd;cursor:help}
+abbr{text-transform:none}
+blockquote{margin:0 0 1.25em;padding:.5625em 1.25em 0 1.1875em;border-left:1px solid #ddd}
+blockquote cite{display:block;font-size:.9375em;color:rgba(0,0,0,.6)}
+blockquote cite::before{content:"\2014 \0020"}
+blockquote cite a,blockquote cite a:visited{color:rgba(0,0,0,.6)}
+blockquote,blockquote p{line-height:1.6;color:rgba(0,0,0,.85)}
+@media screen and (min-width:768px){h1,h2,h3,#toctitle,.sidebarblock>.content>.title,h4,h5,h6{line-height:1.2}
+h1{font-size:2.75em}
+h2{font-size:2.3125em}
+h3,#toctitle,.sidebarblock>.content>.title{font-size:1.6875em}
+h4{font-size:1.4375em}}
+table{background:#fff;margin-bottom:1.25em;border:solid 1px #dedede}
+table thead,table tfoot{background:#f7f8f7}
+table thead tr th,table thead tr td,table tfoot tr th,table tfoot tr td{padding:.5em .625em .625em;font-size:inherit;color:rgba(0,0,0,.8);text-align:left}
+table tr th,table tr td{padding:.5625em .625em;font-size:inherit;color:rgba(0,0,0,.8)}
+table tr.even,table tr.alt{background:#f8f8f7}
+table thead tr th,table tfoot tr th,table tbody tr td,table tr td,table tfoot tr td{display:table-cell;line-height:1.6}
+h1,h2,h3,#toctitle,.sidebarblock>.content>.title,h4,h5,h6{line-height:1.2;word-spacing:-.05em}
+h1 strong,h2 strong,h3 strong,#toctitle strong,.sidebarblock>.content>.title strong,h4 strong,h5 strong,h6 strong{font-weight:400}
+.clearfix::before,.clearfix::after,.float-group::before,.float-group::after{content:" ";display:table}
+.clearfix::after,.float-group::after{clear:both}
+:not(pre):not([class^=L])>code{font-size:.9375em;font-style:normal!important;letter-spacing:0;padding:.1em .5ex;word-spacing:-.15em;background:#f7f7f8;-webkit-border-radius:4px;border-radius:4px;line-height:1.45;text-rendering:optimizeSpeed;word-wrap:break-word}
+:not(pre)>code.nobreak{word-wrap:normal}
+:not(pre)>code.nowrap{white-space:nowrap}
+pre{color:rgba(0,0,0,.9);font-family:"Droid Sans Mono","DejaVu Sans Mono",monospace;line-height:1.45;text-rendering:optimizeSpeed}
+pre code,pre pre{color:inherit;font-size:inherit;line-height:inherit}
+pre>code{display:block}
+pre.nowrap,pre.nowrap pre{white-space:pre;word-wrap:normal}
+em em{font-style:normal}
+strong strong{font-weight:400}
+.keyseq{color:rgba(51,51,51,.8)}
+kbd{font-family:"Droid Sans Mono","DejaVu Sans Mono",monospace;display:inline-block;color:rgba(0,0,0,.8);font-size:.65em;line-height:1.45;background:#f7f7f7;border:1px solid #ccc;-webkit-border-radius:3px;border-radius:3px;-webkit-box-shadow:0 1px 0 rgba(0,0,0,.2),0 0 0 .1em white inset;box-shadow:0 1px 0 rgba(0,0,0,.2),0 0 0 .1em #fff inset;margin:0 .15em;padding:.2em .5em;vertical-align:middle;position:relative;top:-.1em;white-space:nowrap}
+.keyseq kbd:first-child{margin-left:0}
+.keyseq kbd:last-child{margin-right:0}
+.menuseq,.menuref{color:#000}
+.menuseq b:not(.caret),.menuref{font-weight:inherit}
+.menuseq{word-spacing:-.02em}
+.menuseq b.caret{font-size:1.25em;line-height:.8}
+.menuseq i.caret{font-weight:bold;text-align:center;width:.45em}
+b.button::before,b.button::after{position:relative;top:-1px;font-weight:400}
+b.button::before{content:"[";padding:0 3px 0 2px}
+b.button::after{content:"]";padding:0 2px 0 3px}
+p a>code:hover{color:rgba(0,0,0,.9)}
+#header,#content,#footnotes,#footer{width:100%;margin-left:auto;margin-right:auto;margin-top:0;margin-bottom:0;max-width:62.5em;*zoom:1;position:relative;padding-left:.9375em;padding-right:.9375em}
+#header::before,#header::after,#content::before,#content::after,#footnotes::before,#footnotes::after,#footer::before,#footer::after{content:" ";display:table}
+#header::after,#content::after,#footnotes::after,#footer::after{clear:both}
+#content{margin-top:1.25em}
+#content::before{content:none}
+#header>h1:first-child{color:rgba(0,0,0,.85);margin-top:2.25rem;margin-bottom:0}
+#header>h1:first-child+#toc{margin-top:8px;border-top:1px solid #dddddf}
+#header>h1:only-child,body.toc2 #header>h1:nth-last-child(2){border-bottom:1px solid #dddddf;padding-bottom:8px}
+#header .details{border-bottom:1px solid #dddddf;line-height:1.45;padding-top:.25em;padding-bottom:.25em;padding-left:.25em;color:rgba(0,0,0,.6);display:-ms-flexbox;display:-webkit-flex;display:flex;-ms-flex-flow:row wrap;-webkit-flex-flow:row wrap;flex-flow:row wrap}
+#header .details span:first-child{margin-left:-.125em}
+#header .details span.email a{color:rgba(0,0,0,.85)}
+#header .details br{display:none}
+#header .details br+span::before{content:"\00a0\2013\00a0"}
+#header .details br+span.author::before{content:"\00a0\22c5\00a0";color:rgba(0,0,0,.85)}
+#header .details br+span#revremark::before{content:"\00a0|\00a0"}
+#header #revnumber{text-transform:capitalize}
+#header #revnumber::after{content:"\00a0"}
+#content>h1:first-child:not([class]){color:rgba(0,0,0,.85);border-bottom:1px solid #dddddf;padding-bottom:8px;margin-top:0;padding-top:1rem;margin-bottom:1.25rem}
+#toc{border-bottom:1px solid #e7e7e9;padding-bottom:.5em}
+#toc>ul{margin-left:.125em}
+#toc ul.sectlevel0>li>a{font-style:italic}
+#toc ul.sectlevel0 ul.sectlevel1{margin:.5em 0}
+#toc ul{font-family:"Open Sans","DejaVu Sans",sans-serif;list-style-type:none}
+#toc li{line-height:1.3334;margin-top:.3334em}
+#toc a{text-decoration:none}
+#toc a:active{text-decoration:underline}
+#toctitle{color:#7a2518;font-size:1.2em}
+@media screen and (min-width:768px){#toctitle{font-size:1.375em}
+body.toc2{padding-left:15em;padding-right:0}
+#toc.toc2{margin-top:0!important;background:#f8f8f7;position:fixed;width:15em;left:0;top:0;border-right:1px solid #e7e7e9;border-top-width:0!important;border-bottom-width:0!important;z-index:1000;padding:1.25em 1em;height:100%;overflow:auto}
+#toc.toc2 #toctitle{margin-top:0;margin-bottom:.8rem;font-size:1.2em}
+#toc.toc2>ul{font-size:.9em;margin-bottom:0}
+#toc.toc2 ul ul{margin-left:0;padding-left:1em}
+#toc.toc2 ul.sectlevel0 ul.sectlevel1{padding-left:0;margin-top:.5em;margin-bottom:.5em}
+body.toc2.toc-right{padding-left:0;padding-right:15em}
+body.toc2.toc-right #toc.toc2{border-right-width:0;border-left:1px solid #e7e7e9;left:auto;right:0}}
+@media screen and (min-width:1280px){body.toc2{padding-left:20em;padding-right:0}
+#toc.toc2{width:20em}
+#toc.toc2 #toctitle{font-size:1.375em}
+#toc.toc2>ul{font-size:.95em}
+#toc.toc2 ul ul{padding-left:1.25em}
+body.toc2.toc-right{padding-left:0;padding-right:20em}}
+#content #toc{border-style:solid;border-width:1px;border-color:#e0e0dc;margin-bottom:1.25em;padding:1.25em;background:#f8f8f7;-webkit-border-radius:4px;border-radius:4px}
+#content #toc>:first-child{margin-top:0}
+#content #toc>:last-child{margin-bottom:0}
+#footer{max-width:100%;background:rgba(0,0,0,.8);padding:1.25em}
+#footer-text{color:rgba(255,255,255,.8);line-height:1.44}
+#content{margin-bottom:.625em}
+.sect1{padding-bottom:.625em}
+@media screen and (min-width:768px){#content{margin-bottom:1.25em}
+.sect1{padding-bottom:1.25em}}
+.sect1:last-child{padding-bottom:0}
+.sect1+.sect1{border-top:1px solid #e7e7e9}
+#content h1>a.anchor,h2>a.anchor,h3>a.anchor,#toctitle>a.anchor,.sidebarblock>.content>.title>a.anchor,h4>a.anchor,h5>a.anchor,h6>a.anchor{position:absolute;z-index:1001;width:1.5ex;margin-left:-1.5ex;display:block;text-decoration:none!important;visibility:hidden;text-align:center;font-weight:400}
+#content h1>a.anchor::before,h2>a.anchor::before,h3>a.anchor::before,#toctitle>a.anchor::before,.sidebarblock>.content>.title>a.anchor::before,h4>a.anchor::before,h5>a.anchor::before,h6>a.anchor::before{content:"\00A7";font-size:.85em;display:block;padding-top:.1em}
+#content h1:hover>a.anchor,#content h1>a.anchor:hover,h2:hover>a.anchor,h2>a.anchor:hover,h3:hover>a.anchor,#toctitle:hover>a.anchor,.sidebarblock>.content>.title:hover>a.anchor,h3>a.anchor:hover,#toctitle>a.anchor:hover,.sidebarblock>.content>.title>a.anchor:hover,h4:hover>a.anchor,h4>a.anchor:hover,h5:hover>a.anchor,h5>a.anchor:hover,h6:hover>a.anchor,h6>a.anchor:hover{visibility:visible}
+#content h1>a.link,h2>a.link,h3>a.link,#toctitle>a.link,.sidebarblock>.content>.title>a.link,h4>a.link,h5>a.link,h6>a.link{color:#ba3925;text-decoration:none}
+#content h1>a.link:hover,h2>a.link:hover,h3>a.link:hover,#toctitle>a.link:hover,.sidebarblock>.content>.title>a.link:hover,h4>a.link:hover,h5>a.link:hover,h6>a.link:hover{color:#a53221}
+details,.audioblock,.imageblock,.literalblock,.listingblock,.stemblock,.videoblock{margin-bottom:1.25em}
+details>summary:first-of-type{cursor:pointer;display:list-item;outline:none;margin-bottom:.75em}
+.admonitionblock td.content>.title,.audioblock>.title,.exampleblock>.title,.imageblock>.title,.listingblock>.title,.literalblock>.title,.stemblock>.title,.openblock>.title,.paragraph>.title,.quoteblock>.title,table.tableblock>.title,.verseblock>.title,.videoblock>.title,.dlist>.title,.olist>.title,.ulist>.title,.qlist>.title,.hdlist>.title{text-rendering:optimizeLegibility;text-align:left;font-family:"Noto Serif","DejaVu Serif",serif;font-size:1rem;font-style:italic}
+table.tableblock.fit-content>caption.title{white-space:nowrap;width:0}
+.paragraph.lead>p,#preamble>.sectionbody>[class="paragraph"]:first-of-type p{font-size:1.21875em;line-height:1.6;color:rgba(0,0,0,.85)}
+table.tableblock #preamble>.sectionbody>[class="paragraph"]:first-of-type p{font-size:inherit}
+.admonitionblock>table{border-collapse:separate;border:0;background:none;width:100%}
+.admonitionblock>table td.icon{text-align:center;width:80px}
+.admonitionblock>table td.icon img{max-width:none}
+.admonitionblock>table td.icon .title{font-weight:bold;font-family:"Open Sans","DejaVu Sans",sans-serif;text-transform:uppercase}
+.admonitionblock>table td.content{padding-left:1.125em;padding-right:1.25em;border-left:1px solid #dddddf;color:rgba(0,0,0,.6)}
+.admonitionblock>table td.content>:last-child>:last-child{margin-bottom:0}
+.exampleblock>.content{border-style:solid;border-width:1px;border-color:#e6e6e6;margin-bottom:1.25em;padding:1.25em;background:#fff;-webkit-border-radius:4px;border-radius:4px}
+.exampleblock>.content>:first-child{margin-top:0}
+.exampleblock>.content>:last-child{margin-bottom:0}
+.sidebarblock{border-style:solid;border-width:1px;border-color:#dbdbd6;margin-bottom:1.25em;padding:1.25em;background:#f3f3f2;-webkit-border-radius:4px;border-radius:4px}
+.sidebarblock>:first-child{margin-top:0}
+.sidebarblock>:last-child{margin-bottom:0}
+.sidebarblock>.content>.title{color:#7a2518;margin-top:0;text-align:center}
+.exampleblock>.content>:last-child>:last-child,.exampleblock>.content .olist>ol>li:last-child>:last-child,.exampleblock>.content .ulist>ul>li:last-child>:last-child,.exampleblock>.content .qlist>ol>li:last-child>:last-child,.sidebarblock>.content>:last-child>:last-child,.sidebarblock>.content .olist>ol>li:last-child>:last-child,.sidebarblock>.content .ulist>ul>li:last-child>:last-child,.sidebarblock>.content .qlist>ol>li:last-child>:last-child{margin-bottom:0}
+.literalblock pre,.listingblock>.content>pre{-webkit-border-radius:4px;border-radius:4px;word-wrap:break-word;overflow-x:auto;padding:1em;font-size:.8125em}
+@media screen and (min-width:768px){.literalblock pre,.listingblock>.content>pre{font-size:.90625em}}
+@media screen and (min-width:1280px){.literalblock pre,.listingblock>.content>pre{font-size:1em}}
+.literalblock pre,.listingblock>.content>pre:not(.highlight),.listingblock>.content>pre[class="highlight"],.listingblock>.content>pre[class^="highlight "]{background:#f7f7f8}
+.literalblock.output pre{color:#f7f7f8;background:rgba(0,0,0,.9)}
+.listingblock>.content{position:relative}
+.listingblock code[data-lang]::before{display:none;content:attr(data-lang);position:absolute;font-size:.75em;top:.425rem;right:.5rem;line-height:1;text-transform:uppercase;color:inherit;opacity:.5}
+.listingblock:hover code[data-lang]::before{display:block}
+.listingblock.terminal pre .command::before{content:attr(data-prompt);padding-right:.5em;color:inherit;opacity:.5}
+.listingblock.terminal pre .command:not([data-prompt])::before{content:"$"}
+.listingblock pre.highlightjs{padding:0}
+.listingblock pre.highlightjs>code{padding:1em;-webkit-border-radius:4px;border-radius:4px}
+.listingblock pre.prettyprint{border-width:0}
+.prettyprint{background:#f7f7f8}
+pre.prettyprint .linenums{line-height:1.45;margin-left:2em}
+pre.prettyprint li{background:none;list-style-type:inherit;padding-left:0}
+pre.prettyprint li code[data-lang]::before{opacity:1}
+pre.prettyprint li:not(:first-child) code[data-lang]::before{display:none}
+table.linenotable{border-collapse:separate;border:0;margin-bottom:0;background:none}
+table.linenotable td[class]{color:inherit;vertical-align:top;padding:0;line-height:inherit;white-space:normal}
+table.linenotable td.code{padding-left:.75em}
+table.linenotable td.linenos{border-right:1px solid currentColor;opacity:.35;padding-right:.5em}
+pre.pygments .lineno{border-right:1px solid currentColor;opacity:.35;display:inline-block;margin-right:.75em}
+pre.pygments .lineno::before{content:"";margin-right:-.125em}
+.quoteblock{margin:0 1em 1.25em 1.5em;display:table}
+.quoteblock:not(.excerpt)>.title{margin-left:-1.5em;margin-bottom:.75em}
+.quoteblock blockquote,.quoteblock p{color:rgba(0,0,0,.85);font-size:1.15rem;line-height:1.75;word-spacing:.1em;letter-spacing:0;font-style:italic;text-align:justify}
+.quoteblock blockquote{margin:0;padding:0;border:0}
+.quoteblock blockquote::before{content:"\201c";float:left;font-size:2.75em;font-weight:bold;line-height:.6em;margin-left:-.6em;color:#7a2518;text-shadow:0 1px 2px rgba(0,0,0,.1)}
+.quoteblock blockquote>.paragraph:last-child p{margin-bottom:0}
+.quoteblock .attribution{margin-top:.75em;margin-right:.5ex;text-align:right}
+.verseblock{margin:0 1em 1.25em}
+.verseblock pre{font-family:"Open Sans","DejaVu Sans",sans;font-size:1.15rem;color:rgba(0,0,0,.85);font-weight:300;text-rendering:optimizeLegibility}
+.verseblock pre strong{font-weight:400}
+.verseblock .attribution{margin-top:1.25rem;margin-left:.5ex}
+.quoteblock .attribution,.verseblock .attribution{font-size:.9375em;line-height:1.45;font-style:italic}
+.quoteblock .attribution br,.verseblock .attribution br{display:none}
+.quoteblock .attribution cite,.verseblock .attribution cite{display:block;letter-spacing:-.025em;color:rgba(0,0,0,.6)}
+.quoteblock.abstract blockquote::before,.quoteblock.excerpt blockquote::before,.quoteblock .quoteblock blockquote::before{display:none}
+.quoteblock.abstract blockquote,.quoteblock.abstract p,.quoteblock.excerpt blockquote,.quoteblock.excerpt p,.quoteblock .quoteblock blockquote,.quoteblock .quoteblock p{line-height:1.6;word-spacing:0}
+.quoteblock.abstract{margin:0 1em 1.25em;display:block}
+.quoteblock.abstract>.title{margin:0 0 .375em;font-size:1.15em;text-align:center}
+.quoteblock.excerpt>blockquote,.quoteblock .quoteblock{padding:0 0 .25em 1em;border-left:.25em solid #dddddf}
+.quoteblock.excerpt,.quoteblock .quoteblock{margin-left:0}
+.quoteblock.excerpt blockquote,.quoteblock.excerpt p,.quoteblock .quoteblock blockquote,.quoteblock .quoteblock p{color:inherit;font-size:1.0625rem}
+.quoteblock.excerpt .attribution,.quoteblock .quoteblock .attribution{color:inherit;text-align:left;margin-right:0}
+table.tableblock{max-width:100%;border-collapse:separate}
+p.tableblock:last-child{margin-bottom:0}
+td.tableblock>.content>:last-child{margin-bottom:-1.25em}
+td.tableblock>.content>:last-child.sidebarblock{margin-bottom:0}
+table.tableblock,th.tableblock,td.tableblock{border:0 solid #dedede}
+table.grid-all>thead>tr>.tableblock,table.grid-all>tbody>tr>.tableblock{border-width:0 1px 1px 0}
+table.grid-all>tfoot>tr>.tableblock{border-width:1px 1px 0 0}
+table.grid-cols>*>tr>.tableblock{border-width:0 1px 0 0}
+table.grid-rows>thead>tr>.tableblock,table.grid-rows>tbody>tr>.tableblock{border-width:0 0 1px}
+table.grid-rows>tfoot>tr>.tableblock{border-width:1px 0 0}
+table.grid-all>*>tr>.tableblock:last-child,table.grid-cols>*>tr>.tableblock:last-child{border-right-width:0}
+table.grid-all>tbody>tr:last-child>.tableblock,table.grid-all>thead:last-child>tr>.tableblock,table.grid-rows>tbody>tr:last-child>.tableblock,table.grid-rows>thead:last-child>tr>.tableblock{border-bottom-width:0}
+table.frame-all{border-width:1px}
+table.frame-sides{border-width:0 1px}
+table.frame-topbot,table.frame-ends{border-width:1px 0}
+table.stripes-all tr,table.stripes-odd tr:nth-of-type(odd),table.stripes-even tr:nth-of-type(even),table.stripes-hover tr:hover{background:#f8f8f7}
+th.halign-left,td.halign-left{text-align:left}
+th.halign-right,td.halign-right{text-align:right}
+th.halign-center,td.halign-center{text-align:center}
+th.valign-top,td.valign-top{vertical-align:top}
+th.valign-bottom,td.valign-bottom{vertical-align:bottom}
+th.valign-middle,td.valign-middle{vertical-align:middle}
+table thead th,table tfoot th{font-weight:bold}
+tbody tr th{display:table-cell;line-height:1.6;background:#f7f8f7}
+tbody tr th,tbody tr th p,tfoot tr th,tfoot tr th p{color:rgba(0,0,0,.8);font-weight:bold}
+p.tableblock>code:only-child{background:none;padding:0}
+p.tableblock{font-size:1em}
+ol{margin-left:1.75em}
+ul li ol{margin-left:1.5em}
+dl dd{margin-left:1.125em}
+dl dd:last-child,dl dd:last-child>:last-child{margin-bottom:0}
+ol>li p,ul>li p,ul dd,ol dd,.olist .olist,.ulist .ulist,.ulist .olist,.olist .ulist{margin-bottom:.625em}
+ul.checklist,ul.none,ol.none,ul.no-bullet,ol.no-bullet,ol.unnumbered,ul.unstyled,ol.unstyled{list-style-type:none}
+ul.no-bullet,ol.no-bullet,ol.unnumbered{margin-left:.625em}
+ul.unstyled,ol.unstyled{margin-left:0}
+ul.checklist{margin-left:.625em}
+ul.checklist li>p:first-child>.fa-square-o:first-child,ul.checklist li>p:first-child>.fa-check-square-o:first-child{width:1.25em;font-size:.8em;position:relative;bottom:.125em}
+ul.checklist li>p:first-child>input[type="checkbox"]:first-child{margin-right:.25em}
+ul.inline{display:-ms-flexbox;display:-webkit-box;display:flex;-ms-flex-flow:row wrap;-webkit-flex-flow:row wrap;flex-flow:row wrap;list-style:none;margin:0 0 .625em -1.25em}
+ul.inline>li{margin-left:1.25em}
+.unstyled dl dt{font-weight:400;font-style:normal}
+ol.arabic{list-style-type:decimal}
+ol.decimal{list-style-type:decimal-leading-zero}
+ol.loweralpha{list-style-type:lower-alpha}
+ol.upperalpha{list-style-type:upper-alpha}
+ol.lowerroman{list-style-type:lower-roman}
+ol.upperroman{list-style-type:upper-roman}
+ol.lowergreek{list-style-type:lower-greek}
+.hdlist>table,.colist>table{border:0;background:none}
+.hdlist>table>tbody>tr,.colist>table>tbody>tr{background:none}
+td.hdlist1,td.hdlist2{vertical-align:top;padding:0 .625em}
+td.hdlist1{font-weight:bold;padding-bottom:1.25em}
+.literalblock+.colist,.listingblock+.colist{margin-top:-.5em}
+.colist td:not([class]):first-child{padding:.4em .75em 0;line-height:1;vertical-align:top}
+.colist td:not([class]):first-child img{max-width:none}
+.colist td:not([class]):last-child{padding:.25em 0}
+.thumb,.th{line-height:0;display:inline-block;border:solid 4px #fff;-webkit-box-shadow:0 0 0 1px #ddd;box-shadow:0 0 0 1px #ddd}
+.imageblock.left{margin:.25em .625em 1.25em 0}
+.imageblock.right{margin:.25em 0 1.25em .625em}
+.imageblock>.title{margin-bottom:0}
+.imageblock.thumb,.imageblock.th{border-width:6px}
+.imageblock.thumb>.title,.imageblock.th>.title{padding:0 .125em}
+.image.left,.image.right{margin-top:.25em;margin-bottom:.25em;display:inline-block;line-height:0}
+.image.left{margin-right:.625em}
+.image.right{margin-left:.625em}
+a.image{text-decoration:none;display:inline-block}
+a.image object{pointer-events:none}
+sup.footnote,sup.footnoteref{font-size:.875em;position:static;vertical-align:super}
+sup.footnote a,sup.footnoteref a{text-decoration:none}
+sup.footnote a:active,sup.footnoteref a:active{text-decoration:underline}
+#footnotes{padding-top:.75em;padding-bottom:.75em;margin-bottom:.625em}
+#footnotes hr{width:20%;min-width:6.25em;margin:-.25em 0 .75em;border-width:1px 0 0}
+#footnotes .footnote{padding:0 .375em 0 .225em;line-height:1.3334;font-size:.875em;margin-left:1.2em;margin-bottom:.2em}
+#footnotes .footnote a:first-of-type{font-weight:bold;text-decoration:none;margin-left:-1.05em}
+#footnotes .footnote:last-of-type{margin-bottom:0}
+#content #footnotes{margin-top:-.625em;margin-bottom:0;padding:.75em 0}
+.gist .file-data>table{border:0;background:#fff;width:100%;margin-bottom:0}
+.gist .file-data>table td.line-data{width:99%}
+div.unbreakable{page-break-inside:avoid}
+.big{font-size:larger}
+.small{font-size:smaller}
+.underline{text-decoration:underline}
+.overline{text-decoration:overline}
+.line-through{text-decoration:line-through}
+.aqua{color:#00bfbf}
+.aqua-background{background:#00fafa}
+.black{color:#000}
+.black-background{background:#000}
+.blue{color:#0000bf}
+.blue-background{background:#0000fa}
+.fuchsia{color:#bf00bf}
+.fuchsia-background{background:#fa00fa}
+.gray{color:#606060}
+.gray-background{background:#7d7d7d}
+.green{color:#006000}
+.green-background{background:#007d00}
+.lime{color:#00bf00}
+.lime-background{background:#00fa00}
+.maroon{color:#600000}
+.maroon-background{background:#7d0000}
+.navy{color:#000060}
+.navy-background{background:#00007d}
+.olive{color:#606000}
+.olive-background{background:#7d7d00}
+.purple{color:#600060}
+.purple-background{background:#7d007d}
+.red{color:#bf0000}
+.red-background{background:#fa0000}
+.silver{color:#909090}
+.silver-background{background:#bcbcbc}
+.teal{color:#006060}
+.teal-background{background:#007d7d}
+.white{color:#bfbfbf}
+.white-background{background:#fafafa}
+.yellow{color:#bfbf00}
+.yellow-background{background:#fafa00}
+span.icon>.fa{cursor:default}
+a span.icon>.fa{cursor:inherit}
+.admonitionblock td.icon [class^="fa icon-"]{font-size:2.5em;text-shadow:1px 1px 2px rgba(0,0,0,.5);cursor:default}
+.admonitionblock td.icon .icon-note::before{content:"\f05a";color:#19407c}
+.admonitionblock td.icon .icon-tip::before{content:"\f0eb";text-shadow:1px 1px 2px rgba(155,155,0,.8);color:#111}
+.admonitionblock td.icon .icon-warning::before{content:"\f071";color:#bf6900}
+.admonitionblock td.icon .icon-caution::before{content:"\f06d";color:#bf3400}
+.admonitionblock td.icon .icon-important::before{content:"\f06a";color:#bf0000}
+.conum[data-value]{display:inline-block;color:#fff!important;background:rgba(0,0,0,.8);-webkit-border-radius:100px;border-radius:100px;text-align:center;font-size:.75em;width:1.67em;height:1.67em;line-height:1.67em;font-family:"Open Sans","DejaVu Sans",sans-serif;font-style:normal;font-weight:bold}
+.conum[data-value] *{color:#fff!important}
+.conum[data-value]+b{display:none}
+.conum[data-value]::after{content:attr(data-value)}
+pre .conum[data-value]{position:relative;top:-.125em}
+b.conum *{color:inherit!important}
+.conum:not([data-value]):empty{display:none}
+dt,th.tableblock,td.content,div.footnote{text-rendering:optimizeLegibility}
+h1,h2,p,td.content,span.alt{letter-spacing:-.01em}
+p strong,td.content strong,div.footnote strong{letter-spacing:-.005em}
+p,blockquote,dt,td.content,span.alt{font-size:1.0625rem}
+p{margin-bottom:1.25rem}
+.sidebarblock p,.sidebarblock dt,.sidebarblock td.content,p.tableblock{font-size:1em}
+.exampleblock>.content{background:#fffef7;border-color:#e0e0dc;-webkit-box-shadow:0 1px 4px #e0e0dc;box-shadow:0 1px 4px #e0e0dc}
+.print-only{display:none!important}
+@page{margin:1.25cm .75cm}
+@media print{*{-webkit-box-shadow:none!important;box-shadow:none!important;text-shadow:none!important}
+html{font-size:80%}
+a{color:inherit!important;text-decoration:underline!important}
+a.bare,a[href^="#"],a[href^="mailto:"]{text-decoration:none!important}
+a[href^="http:"]:not(.bare)::after,a[href^="https:"]:not(.bare)::after{content:"(" attr(href) ")";display:inline-block;font-size:.875em;padding-left:.25em}
+abbr[title]::after{content:" (" attr(title) ")"}
+pre,blockquote,tr,img,object,svg{page-break-inside:avoid}
+thead{display:table-header-group}
+svg{max-width:100%}
+p,blockquote,dt,td.content{font-size:1em;orphans:3;widows:3}
+h2,h3,#toctitle,.sidebarblock>.content>.title{page-break-after:avoid}
+#toc,.sidebarblock,.exampleblock>.content{background:none!important}
+#toc{border-bottom:1px solid #dddddf!important;padding-bottom:0!important}
+body.book #header{text-align:center}
+body.book #header>h1:first-child{border:0!important;margin:2.5em 0 1em}
+body.book #header .details{border:0!important;display:block;padding:0!important}
+body.book #header .details span:first-child{margin-left:0!important}
+body.book #header .details br{display:block}
+body.book #header .details br+span::before{content:none!important}
+body.book #toc{border:0!important;text-align:left!important;padding:0!important;margin:0!important}
+body.book #toc,body.book #preamble,body.book h1.sect0,body.book .sect1>h2{page-break-before:always}
+.listingblock code[data-lang]::before{display:block}
+#footer{padding:0 .9375em}
+.hide-on-print{display:none!important}
+.print-only{display:block!important}
+.hide-for-print{display:none!important}
+.show-for-print{display:inherit!important}}
+@media print,amzn-kf8{#header>h1:first-child{margin-top:1.25rem}
+.sect1{padding:0!important}
+.sect1+.sect1{border:0}
+#footer{background:none}
+#footer-text{color:rgba(0,0,0,.6);font-size:.9em}}
+@media amzn-kf8{#header,#content,#footnotes,#footer{padding:0}}
+</style>
+</head>
+<body class="article toc2 toc-left">
+<div id="header">
+<h1>Encoding for Robust Immutable Storage (ERIS)</h1>
+<div class="details">
+<span id="author" class="author">pukkamustard</span><br>
+<span id="email" class="email"><a href="mailto:pukkamustard@posteo.net">pukkamustard@posteo.net</a></span><br>
+<span id="revnumber">version 0.2.0,</span>
+<span id="revdate">2020-12-07</span>
+</div>
+<div id="toc" class="toc2">
+<div id="toctitle">Table of Contents</div>
+<ul class="sectlevel1">
+<li><a href="#_introduction">1. Introduction</a>
+<ul class="sectlevel2">
+<li><a href="#_objectives">1.1. Objectives</a></li>
+<li><a href="#_scope">1.2. Scope</a></li>
+<li><a href="#_previous_work">1.3. Previous work</a></li>
+<li><a href="#_terminology">1.4. Terminology</a></li>
+</ul>
+</li>
+<li><a href="#_specification_of_eris">2. Specification of ERIS</a>
+<ul class="sectlevel2">
+<li><a href="#_cryptographic_primitives">2.1. Cryptographic Primitives</a></li>
+<li><a href="#_block_size">2.2. Block Size</a></li>
+<li><a href="#_convergence_secret">2.3. Convergence Secret</a></li>
+<li><a href="#_encoding">2.4. Encoding</a></li>
+<li><a href="#_decoding">2.5. Decoding</a></li>
+<li><a href="#_binary_encoding_of_read_capability">2.6. Binary Encoding of Read Capability</a></li>
+<li><a href="#_urn">2.7. URN</a></li>
+</ul>
+</li>
+<li><a href="#_applications">3. Applications</a>
+<ul class="sectlevel2">
+<li><a href="#_storage_and_transport_layers">3.1. Storage and Transport Layers</a></li>
+<li><a href="#_authenticity_of_content">3.2. Authenticity of Content</a></li>
+<li><a href="#_mutability_and_namespaces">3.3. Mutability and Namespaces</a></li>
+</ul>
+</li>
+<li><a href="#_test_vectors">4. Test Vectors</a>
+<ul class="sectlevel2">
+<li><a href="#_machine_readable">4.1. Machine Readable</a></li>
+<li><a href="#_large_content">4.2. Large content</a></li>
+</ul>
+</li>
+<li><a href="#_implementations">5. Implementations</a></li>
+<li><a href="#_acknowledgments">6. Acknowledgments</a></li>
+<li><a href="#_changelog">Changelog</a></li>
+<li><a href="#_copyright">Copyright</a></li>
+<li><a href="#_references">References</a>
+<ul class="sectlevel2">
+<li><a href="#_normative_references">Normative References</a></li>
+<li><a href="#_informative_references">Informative References</a></li>
+</ul>
+</li>
+</ul>
+</div>
+</div>
+<div id="content">
+<div id="preamble">
+<div class="sectionbody">
+<div class="quoteblock abstract">
+<blockquote>
+This document describes the Encoding for Robust Immutable Storage (ERIS). ERIS is an encoding of arbitrary content into a set of uniformly sized, encrypted and content-addressed blocks as well as a short identifier (a URN). The content can be reassembled from the encrypted blocks only with this identifier. The encoding is defined independent of any storage and transport layer or any specific application. We illustrate how ERIS can be used as a building block for robust and decentralized applications.
+</blockquote>
+</div>
+</div>
+</div>
+<div class="sect1">
+<h2 id="_introduction"><a class="anchor" href="#_introduction"></a>1. Introduction</h2>
+<div class="sectionbody">
+<div class="paragraph">
+<p>Unavailability of content on computer networks is a major cause for reduced reliability of networked services <a href="#Polleres2020">[Polleres2020]</a>.</p>
+</div>
+<div class="paragraph">
+<p>Availability can be increased by caching content on multiple peers. However most content on the Internet is identified by its location. Caching location-addressed content is complicated as the content receives a new location.</p>
+</div>
+<div class="paragraph">
+<p>An alternative to identifying content by its location is to identify content by its content itself. This is called content-addressing. The hash of some content is computed and used as an unique identifier for the content.</p>
+</div>
+<div class="paragraph">
+<p>Caching content-addressed content and making it available redundantly is much easier as the content is completely decoupled from any physical location. Integrity of content is automatically ensured with content-addressing (when using a cryptographic hash) as the identifier of the content can be computed to check that the content matches the requested identifier.</p>
+</div>
+<div class="paragraph">
+<p>However, naive content-addressing has certain drawbacks:</p>
+</div>
+<div class="ulist">
+<ul>
+<li>
+<p>Large content is stored as a large chunk of data. In order to optimize storage and network operations it is better to split up content into smaller uniformly sized blocks and reassemble blocks when needed.</p>
+</li>
+<li>
+<p>Confidentiality: Content is readable by all peers involved in transporting, caching and storing content.</p>
+</li>
+</ul>
+</div>
+<div class="paragraph">
+<p>ERIS addresses these issues by splitting content into small uniformly sized and encrypted blocks. These blocks can be reassembled to the original content only with access to a short <em>read capability</em>, which can be encoded as an URN.</p>
+</div>
+<div class="paragraph">
+<p>Encodings similar to ERIS are already widely-used in applications and protocols such as GNUNet (see <a href="#_previous_work">Section 1.3</a>), BitTorrent <a href="#BEP52">[BEP52]</a>, Freenet <a href="#Freenet">[Freenet]</a> and others. However, they all use slightly different encodings that are tied to the respective protocols and applications. ERIS defines an encoding independant of any specific protocol or application and decouples content from transport and storage layers. ERIS may be seen as a modest step towards Information-Centric Networking <a href="#RFC7927">[RFC7927]</a>.</p>
+</div>
+<div class="sect2">
+<h3 id="_objectives"><a class="anchor" href="#_objectives"></a>1.1. Objectives</h3>
+<div class="paragraph">
+<p>The objectives of ERIS are:</p>
+</div>
+<div class="dlist">
+<dl>
+<dt class="hdlist1">Availability </dt>
+<dd>
+<p>Content encoded with ERIS can be easily replicated and cached.</p>
+</dd>
+<dt class="hdlist1">Integrity </dt>
+<dd>
+<p>Integrity of content can be verified efficiently.</p>
+</dd>
+<dt class="hdlist1">Confidentiality </dt>
+<dd>
+<p>Encoded content can only be decoded with access to the read capability. Peers without access to the read capability can cache and transport individiual blocks without being able to read the content.</p>
+</dd>
+<dt class="hdlist1">URN reference </dt>
+<dd>
+<p>ERIS encoded content can be referrenced with a single URN (the encoded read capability).</p>
+</dd>
+<dt class="hdlist1">Storage efficiency </dt>
+<dd>
+<p>ERIS can be used to encode small content (&lt; 1 kibibyte) as well as large content (&gt; many gibibyte) with reasonable storage overhead.</p>
+</dd>
+<dt class="hdlist1">Simplicity </dt>
+<dd>
+<p>The encoding should be as simple as possible in order to allow correct implementation on various platforms and in various languages.</p>
+</dd>
+</dl>
+</div>
+<div class="paragraph">
+<p>ERIS can be used to make content available robustly (against network failure or active censorship). ERIS is not suitable for encoding private, end-to-end encrypted communication. The encoding does not provide security properties required for such applications (e.g. forward secrecy). For end-to-end encryption see protocols such as <a href="https://otr.im/">OTR</a>, OMEMO <a href="#OMEMO">[OMEMO]</a> or MLS <a href="#MLS">[MLS]</a> .</p>
+</div>
+</div>
+<div class="sect2">
+<h3 id="_scope"><a class="anchor" href="#_scope"></a>1.2. Scope</h3>
+<div class="paragraph">
+<p>ERIS describes how arbitrary content (sequence of bytes) can be encoded into a set of uniformly sized blocks and an identifier with which the content can be decoded from the set of blocks.</p>
+</div>
+<div class="paragraph">
+<p>ERIS does not prescribe how the blocks should be stored or transported over network. The only requirement is that a block can be referenced and accessed (if available) by the hash value of the contents of the block. In section <a href="#_storage_and_transport_layers">Section 3.1</a> we show how existing technology (including IPFS) can be used to store and transport blocks.</p>
+</div>
+<div class="paragraph">
+<p>There is also no support for grouping content or mutating content. In section <a href="#_mutability_and_namespaces">Section 3.3</a> we describe how such functionality can be implemented on top of ERIS.</p>
+</div>
+<div class="paragraph">
+<p>The lack of certain functionalities is intentional. ERIS is an attempt to find a minimal common basis on which higher functionality can be built. Lacking functionality in ERIS is an acknowledgment that there are many ways of implementing such functionality at a different layer that may be optimized for certain use-cases.</p>
+</div>
+</div>
+<div class="sect2">
+<h3 id="_previous_work"><a class="anchor" href="#_previous_work"></a>1.3. Previous work</h3>
+<div class="paragraph">
+<p>ERIS is inspired and based on the encoding used in the file-sharing application of <a href="https://gnunet.org/">GNUNet</a> - Encoding for Censorship-Resistant Sharing (ECRS) <a href="#ECRS">[ECRS]</a>.</p>
+</div>
+<div class="paragraph">
+<p>ERIS differs from ECRS in following points:</p>
+</div>
+<div class="dlist">
+<dl>
+<dt class="hdlist1">Cryptographic primitives </dt>
+<dd>
+<p>ECRS itself does not specify any cryptographic primitives but the GNUNet implementation uses the SHA-512 hash and AES cipher. ERIS uses the Blake2b-256 cryptographic hash <a href="#RFC7693">[RFC7693]</a> and the ChaCha20 stream cipher <a href="#RFC8439">[RFC8439]</a>. This improves performance, storage efficiency (as hash references are smaller) and allows a convergence secret to be used (via Blake2b keyed hashing; see <a href="#_convergence_secret">Section 2.3</a>).</p>
+</dd>
+<dt class="hdlist1">Block size </dt>
+<dd>
+<p>ECRS uses a fixed block size of 32 KiB. This can be very inefficient when encoding many small pieces of content. ERIS allows a block size of 1 KiB or 32 KiB, allowing efficient encoding of small and large content (see <a href="#_block_size">Section 2.2</a>).</p>
+</dd>
+<dt class="hdlist1">URN </dt>
+<dd>
+<p>ECRS does not specify an URN for referring to encoded content (this is specified as part of the GNUNet file-sharing application). ERIS specifies an URN for encoded content regardless of encoding application or storage and transport layer (see <a href="#_urn">Section 2.7</a>).</p>
+</dd>
+<dt class="hdlist1">Namespaces </dt>
+<dd>
+<p>ECRS defines two mechanisms for grouping and discovering encoded content (SBlock and KBlock). ERIS does not specify any such mechanisms (see <a href="#_mutability_and_namespaces">Section 3.3</a>).</p>
+</dd>
+</dl>
+</div>
+<div class="paragraph">
+<p>Other related projects include Tahoe-LAFS and Freenet. The reader is referred to the ECRS paper <a href="#ECRS">[ECRS]</a> for an in-depth explanation and comparison of related projects.</p>
+</div>
+<div class="paragraph">
+<p>ERIS is being developed in close collaboration with the <a href="https://datashards.net/">Datashards</a> initiative.</p>
+</div>
+</div>
+<div class="sect2">
+<h3 id="_terminology"><a class="anchor" href="#_terminology"></a>1.4. Terminology</h3>
+<div class="paragraph">
+<p>The key words "MUST", "MUST NOT", "REQUIRED", "SHALL", "SHALL NOT", "SHOULD", "SHOULD NOT", "RECOMMENDED", "MAY", and "OPTIONAL" in this document are to be interpreted as described in RFC 2119 <a href="#RFC2119">[RFC2119]</a>.</p>
+</div>
+<div class="paragraph">
+<p>We use binary prefixes for multiples of bytes, i.e: 1024 bytes is 1 kibibyte (KiB), 1024 kibibytes is 1 mebibyte (MiB) and 1024 mebibytes is 1 gigibytes (GiB).</p>
+</div>
+</div>
+</div>
+</div>
+<div class="sect1">
+<h2 id="_specification_of_eris"><a class="anchor" href="#_specification_of_eris"></a>2. Specification of ERIS</h2>
+<div class="sectionbody">
+<div class="sect2">
+<h3 id="_cryptographic_primitives"><a class="anchor" href="#_cryptographic_primitives"></a>2.1. Cryptographic Primitives</h3>
+<div class="paragraph">
+<p>The cryptographic primitives used by ERIS are a cryptographic hash funciton, a symmetric key cipher and a padding algorithm. The hash function and cipher are readily available in open-source libraries such as <a href="https://github.com/jedisct1/libsodium">libsodium</a> or <a href="https://monocypher.org/">Monocypher</a>. The padding algorithm can be implemented with reasonable effort.</p>
+</div>
+<div class="sect3">
+<h4 id="_cryptographic_hash_function"><a class="anchor" href="#_cryptographic_hash_function"></a>2.1.1. Cryptographic Hash Function</h4>
+<div class="paragraph">
+<p>Blake2b <a href="#RFC7693">[RFC7693]</a> with output size of 256 bit (32 byte). We use the keying feature and refer to the key used for keying Blake2b as the <em>hashing key</em>. The hashing key always has a size of 256 bit (32 byte) (see <a href="#_convergence_secret">Section 2.3</a>).</p>
+</div>
+<div class="paragraph">
+<p>Provides the functions <code>Blake2b-256(INPUT, HASHING-KEY)</code> for keyed hashing and <code>Blake2b-256(INPUT)</code> for unkeyed hashing.</p>
+</div>
+</div>
+<div class="sect3">
+<h4 id="_symmetric_key_cipher"><a class="anchor" href="#_symmetric_key_cipher"></a>2.1.2. Symmetric Key Cipher</h4>
+<div class="paragraph">
+<p>ChaCha20 (IETF variant) <a href="#RFC8439">[RFC8439]</a>. Provides <code>ChaCha20(INPUT, KEY)</code>, where <code>INPUT</code> is an arbirtarty length byte sequence and <code>KEY</code> is the 256 bit encryption key. The output is the encrypted byte sequence.</p>
+</div>
+<div class="paragraph">
+<p>The 32 bit initial counter as well as the 96 bit nonce are set to 0. We can safely use the zero nonce as we never reuse a key.</p>
+</div>
+<div class="paragraph">
+<p>Decryption is done with the same function where <code>INPUT</code> is the encrypted byte sequence.</p>
+</div>
+</div>
+<div class="sect3">
+<h4 id="_padding_algorithm"><a class="anchor" href="#_padding_algorithm"></a>2.1.3. Padding Algorithm</h4>
+<div class="paragraph">
+<p>We use a byte padding scheme to ensure that input content size is a multiple of a block size. Provides following functions:</p>
+</div>
+<div class="dlist">
+<dl>
+<dt class="hdlist1"><code>PAD(INPUT,BLOCK-SIZE)</code> </dt>
+<dd>
+<p>For <code>INPUT</code> of size <code>n</code> adds a mandatory byte valued <code>0x80</code> (hexadecimal) to <code>INPUT</code> followed by <code>m &lt; BLOCK-SIZE - 1</code> bytes valued <code>0x00</code> such that <code>n + m + 1</code> is a multiple of <code>BLOCK-SIZE</code>.</p>
+</dd>
+<dt class="hdlist1"><code>UNPAD(INPUT,BLOCK-SIZE)</code> </dt>
+<dd>
+<p>Starts reading bytes from the end of <code>INPUT</code> until a <code>0x80</code> is read and then returns bytes of <code>INPUT</code> before the <code>0x80</code>. Throws an error if a value other than <code>0x00</code> is read before reading <code>0x80</code> or if no <code>0x80</code> is read after reading <code>BLOCK-SIZE - 1</code> bytes from the end.</p>
+</dd>
+</dl>
+</div>
+<div class="paragraph">
+<p>This is the padding algorithm implemented in <a href="https://libsodium.gitbook.io/doc/padding">libsodium</a><sup class="footnote">[<a id="_footnoteref_1" class="footnote" href="#_footnotedef_1" title="View footnote.">1</a>]</sup>.</p>
+</div>
+</div>
+</div>
+<div class="sect2">
+<h3 id="_block_size"><a class="anchor" href="#_block_size"></a>2.2. Block Size</h3>
+<div class="paragraph">
+<p>ERIS uses two block sizes: 1KiB (1024 bytes) and 32KiB (32768 bytes). The block size must be specified when encoding content.</p>
+</div>
+<div class="paragraph">
+<p>Both block sizes can be used to encode content of arbitrary size. The block size of 1KiB is an optimization towards smaller content.</p>
+</div>
+<div class="exampleblock">
+<div class="content">
+<div class="paragraph">
+<p>TODO: Content smaller than TODO SHOULD be encoded with block size 1KiB, content larger than TODO SHOULD be encoded with block size 32KiB.</p>
+</div>
+</div>
+</div>
+<div class="paragraph">
+<p>The block size is encoded in the read capability and the decoding process is capable of handling both cases.</p>
+</div>
+<div class="admonitionblock note">
+<table>
+<tr>
+<td class="icon">
+<div class="title">Note</div>
+</td>
+<td class="content">
+<div class="paragraph">
+<p>When using block size 32KiB to encode content smaller than 1KiB, the content will be encoded in a 32KiB block. This is a storage overhead of over 3100%. When encoding very many pieces of small content (e.g. short messages or cartographic nodes) this overhead is not acceptable.</p>
+</div>
+<div class="paragraph">
+<p>On the other hand, using small block sizes increases the number of internal nodes that must be used to encode the content (see <a href="#_collect_reference_key_pairs_in_nodes">Section 2.4.3</a>). When encoding larger content it is more efficient to use a block size of 32KiB.</p>
+</div>
+</td>
+</tr>
+</table>
+</div>
+</div>
+<div class="sect2">
+<h3 id="_convergence_secret"><a class="anchor" href="#_convergence_secret"></a>2.3. Convergence Secret</h3>
+<div class="paragraph">
+<p>Using the hash of the content as key is called <em>convergent encryption</em>.</p>
+</div>
+<div class="paragraph">
+<p>Because the hash of the content is deterministically computed from the content, the key will be the same when the same content is encoded twice. This results in de-duplication of content. Convergent encryption suffers from two known attacks: The Confirmation Of A File Attack and The Learn-The-Remaining-Information Attack <a href="#Zooko2008">[Zooko2008]</a>. A defense against both attacks is to use a <em>convergence secret</em>. This results in different encoding of the same content with different convergence secret.</p>
+</div>
+<div class="paragraph">
+<p>If no convergence secret is specified a null convergence secret MUST be used (32 bytes of zeroes).</p>
+</div>
+<div class="paragraph">
+<p>The convergence secret is implemented as the keying feature of the Blake2 cryptographic hash <a href="#RFC7693">[RFC7693]</a>.</p>
+</div>
+<div class="admonitionblock note">
+<table>
+<tr>
+<td class="icon">
+<div class="title">Note</div>
+</td>
+<td class="content">
+<div class="paragraph">
+<p>A group using a shared convergence secret can benefit from the advantages of convergenct encryption while being safe against the known attacks from peers that do not know the convergence secret.</p>
+</div>
+</td>
+</tr>
+</table>
+</div>
+</div>
+<div class="sect2">
+<h3 id="_encoding"><a class="anchor" href="#_encoding"></a>2.4. Encoding</h3>
+<div class="paragraph">
+<p>Inputs to the encoding process are:</p>
+</div>
+<div class="dlist">
+<dl>
+<dt class="hdlist1"><code>CONTENT</code> </dt>
+<dd>
+<p>An arbitary length byte sequence of content to be encoded.</p>
+</dd>
+<dt class="hdlist1"><code>CONVERGENCE-SECRET</code> </dt>
+<dd>
+<p>A 256 bit (32 byte) byte sequence (see <a href="#_convergence_secret">Section 2.3</a>).</p>
+</dd>
+<dt class="hdlist1"><code>BLOCK-SIZE</code> </dt>
+<dd>
+<p>The block size used for encoding in bytes can be either 1024 (1KiB) or 32768 (32KiB) (see <a href="#_block_size">Section 2.2</a>).</p>
+</dd>
+</dl>
+</div>
+<div class="paragraph">
+<p>Content is encoded by first splitting into uniformly sized blocks, encrypting the blocks and computing references to the blocks. If there are multiple references to blocks they are collected in nodes that have the same size as content blocks. The nodes are encrypted and references to the nodes are computed. This process is repeated until there is a single root reference.</p>
+</div>
+<div class="paragraph">
+<p>References to nodes and blocks of content consist of a reference to an encrypted block and a key to decrypt the block - a <em>reference-key pair</em>. The process of encrypting a block and computing a reference-key pair is explained in <a href="#_encrypt_block_and_compute_reference_key_pair">Section 2.4.2</a>.</p>
+</div>
+<div class="paragraph">
+<p>The encoding process constructs a tree of reference-key pairs that reference nodes that hold references to nodes of a lower level or to content.</p>
+</div>
+<div class="paragraph">
+<p>The number of reference-key pairs collected into a node is called the <em>arity</em> of the tree and depends on the block size. For block size 1KiB the arity of the tree is 16, for block size 32KiB the arity is 512.</p>
+</div>
+<div class="paragraph">
+<p>An encoding of a content that is split into eight blocks is depicted in <a href="#figure_merkle_tree">Figure 1</a>. For illustration purposes the tree is of arity 2 (instead of 16 or 512).</p>
+</div>
+<div id="figure_merkle_tree" class="imageblock">
+<div class="content">
+<svg width="710pt" height="643pt"
+ viewBox="0.00 0.00 710.00 643.00" xmlns="http://www.w3.org/2000/svg" xmlns:xlink="http://www.w3.org/1999/xlink">
+<g id="graph0" class="graph" transform="scale(1 1) rotate(0) translate(4 639)">
+<title>%3</title>
+<polygon fill="white" stroke="transparent" points="-4,4 -4,-639 706,-639 706,4 -4,4"/>
+<g id="clust1" class="cluster">
+<title>cluster__level_0</title>
+<polygon fill="none" stroke="black" stroke-dasharray="1,5" points="8,-8 8,-156 694,-156 694,-8 8,-8"/>
+<text text-anchor="middle" x="95.5" y="-140.8" font-family="Times,serif" font-size="14.00">level 0 (input content)</text>
+</g>
+<g id="clust2" class="cluster">
+<title>cluster__level_1</title>
+<polygon fill="none" stroke="black" stroke-dasharray="1,5" points="207,-164 207,-313 493,-313 493,-164 207,-164"/>
+<text text-anchor="middle" x="239" y="-297.8" font-family="Times,serif" font-size="14.00">level 1</text>
+</g>
+<g id="clust3" class="cluster">
+<title>cluster__level_2</title>
+<polygon fill="none" stroke="black" stroke-dasharray="1,5" points="279,-321 279,-470 421,-470 421,-321 279,-321"/>
+<text text-anchor="middle" x="311" y="-454.8" font-family="Times,serif" font-size="14.00">level 2</text>
+</g>
+<g id="clust4" class="cluster">
+<title>cluster__level_3</title>
+<polygon fill="none" stroke="black" stroke-dasharray="1,5" points="315,-478 315,-627 385,-627 385,-478 315,-478"/>
+<text text-anchor="middle" x="347" y="-611.8" font-family="Times,serif" font-size="14.00">level 3</text>
+</g>
+<!-- block_7 -->
+<g id="node1" class="node">
+<title>block_7</title>
+<polygon fill="lightblue" stroke="lightblue" points="686,-52 618,-52 618,-16 686,-16 686,-52"/>
+<text text-anchor="middle" x="652" y="-30.3" font-family="sans-serif" font-size="14.00">block&#45;7</text>
+</g>
+<!-- block_6 -->
+<g id="node2" class="node">
+<title>block_6</title>
+<polygon fill="lightblue" stroke="lightblue" points="600,-52 532,-52 532,-16 600,-16 600,-52"/>
+<text text-anchor="middle" x="566" y="-30.3" font-family="sans-serif" font-size="14.00">block&#45;6</text>
+</g>
+<!-- block_5 -->
+<g id="node3" class="node">
+<title>block_5</title>
+<polygon fill="lightblue" stroke="lightblue" points="514,-52 446,-52 446,-16 514,-16 514,-52"/>
+<text text-anchor="middle" x="480" y="-30.3" font-family="sans-serif" font-size="14.00">block&#45;5</text>
+</g>
+<!-- block_4 -->
+<g id="node4" class="node">
+<title>block_4</title>
+<polygon fill="lightblue" stroke="lightblue" points="428,-52 360,-52 360,-16 428,-16 428,-52"/>
+<text text-anchor="middle" x="394" y="-30.3" font-family="sans-serif" font-size="14.00">block&#45;4</text>
+</g>
+<!-- block_3 -->
+<g id="node5" class="node">
+<title>block_3</title>
+<polygon fill="lightblue" stroke="lightblue" points="342,-52 274,-52 274,-16 342,-16 342,-52"/>
+<text text-anchor="middle" x="308" y="-30.3" font-family="sans-serif" font-size="14.00">block&#45;3</text>
+</g>
+<!-- block_2 -->
+<g id="node6" class="node">
+<title>block_2</title>
+<polygon fill="lightblue" stroke="lightblue" points="256,-52 188,-52 188,-16 256,-16 256,-52"/>
+<text text-anchor="middle" x="222" y="-30.3" font-family="sans-serif" font-size="14.00">block&#45;2</text>
+</g>
+<!-- block_1 -->
+<g id="node7" class="node">
+<title>block_1</title>
+<polygon fill="lightblue" stroke="lightblue" points="170,-52 102,-52 102,-16 170,-16 170,-52"/>
+<text text-anchor="middle" x="136" y="-30.3" font-family="sans-serif" font-size="14.00">block&#45;1</text>
+</g>
+<!-- block_0 -->
+<g id="node8" class="node">
+<title>block_0</title>
+<polygon fill="lightblue" stroke="lightblue" points="84,-52 16,-52 16,-16 84,-16 84,-52"/>
+<text text-anchor="middle" x="50" y="-30.3" font-family="sans-serif" font-size="14.00">block&#45;0</text>
+</g>
+<!-- rk_0_7 -->
+<g id="node9" class="node">
+<title>rk_0_7</title>
+<polygon fill="yellow" stroke="yellow" points="614,-88.5 614,-124.5 668,-124.5 668,-88.5 614,-88.5"/>
+<text text-anchor="middle" x="627" y="-102.8" font-family="sans-serif" font-size="14.00">r</text>
+<polyline fill="none" stroke="yellow" points="640,-88.5 640,-124.5 "/>
+<text text-anchor="middle" x="654" y="-102.8" font-family="sans-serif" font-size="14.00">k</text>
+</g>
+<!-- rk_0_7&#45;&gt;block_7 -->
+<g id="edge8" class="edge">
+<title>rk_0_7&#45;&gt;block_7</title>
+<path fill="none" stroke="black" stroke-dasharray="1,5" d="M643.66,-88.43C644.87,-80.67 646.34,-71.28 647.7,-62.56"/>
+<polygon fill="black" stroke="black" points="651.2,-62.82 649.29,-52.4 644.29,-61.74 651.2,-62.82"/>
+</g>
+<!-- rk_0_6 -->
+<g id="node10" class="node">
+<title>rk_0_6</title>
+<polygon fill="yellow" stroke="yellow" points="529,-88.5 529,-124.5 583,-124.5 583,-88.5 529,-88.5"/>
+<text text-anchor="middle" x="542" y="-102.8" font-family="sans-serif" font-size="14.00">r</text>
+<polyline fill="none" stroke="yellow" points="555,-88.5 555,-124.5 "/>
+<text text-anchor="middle" x="569" y="-102.8" font-family="sans-serif" font-size="14.00">k</text>
+</g>
+<!-- rk_0_6&#45;&gt;block_6 -->
+<g id="edge7" class="edge">
+<title>rk_0_6&#45;&gt;block_6</title>
+<path fill="none" stroke="black" stroke-dasharray="1,5" d="M558.42,-88.43C559.52,-80.67 560.85,-71.28 562.09,-62.56"/>
+<polygon fill="black" stroke="black" points="565.59,-62.79 563.53,-52.4 558.66,-61.81 565.59,-62.79"/>
+</g>
+<!-- rk_0_5 -->
+<g id="node11" class="node">
+<title>rk_0_5</title>
+<polygon fill="yellow" stroke="yellow" points="445,-88.5 445,-124.5 499,-124.5 499,-88.5 445,-88.5"/>
+<text text-anchor="middle" x="458" y="-102.8" font-family="sans-serif" font-size="14.00">r</text>
+<polyline fill="none" stroke="yellow" points="471,-88.5 471,-124.5 "/>
+<text text-anchor="middle" x="485" y="-102.8" font-family="sans-serif" font-size="14.00">k</text>
+</g>
+<!-- rk_0_5&#45;&gt;block_5 -->
+<g id="edge6" class="edge">
+<title>rk_0_5&#45;&gt;block_5</title>
+<path fill="none" stroke="black" stroke-dasharray="1,5" d="M473.94,-88.43C474.82,-80.67 475.88,-71.28 476.87,-62.56"/>
+<polygon fill="black" stroke="black" points="480.38,-62.73 478.03,-52.4 473.42,-61.94 480.38,-62.73"/>
+</g>
+<!-- rk_0_4 -->
+<g id="node12" class="node">
+<title>rk_0_4</title>
+<polygon fill="yellow" stroke="yellow" points="363,-88.5 363,-124.5 417,-124.5 417,-88.5 363,-88.5"/>
+<text text-anchor="middle" x="376" y="-102.8" font-family="sans-serif" font-size="14.00">r</text>
+<polyline fill="none" stroke="yellow" points="389,-88.5 389,-124.5 "/>
+<text text-anchor="middle" x="403" y="-102.8" font-family="sans-serif" font-size="14.00">k</text>
+</g>
+<!-- rk_0_4&#45;&gt;block_4 -->
+<g id="edge5" class="edge">
+<title>rk_0_4&#45;&gt;block_4</title>
+<path fill="none" stroke="black" stroke-dasharray="1,5" d="M390.97,-88.43C391.41,-80.67 391.94,-71.28 392.44,-62.56"/>
+<polygon fill="black" stroke="black" points="395.94,-62.58 393.01,-52.4 388.95,-62.18 395.94,-62.58"/>
+</g>
+<!-- rk_0_3 -->
+<g id="node13" class="node">
+<title>rk_0_3</title>
+<polygon fill="yellow" stroke="yellow" points="284,-88.5 284,-124.5 338,-124.5 338,-88.5 284,-88.5"/>
+<text text-anchor="middle" x="297" y="-102.8" font-family="sans-serif" font-size="14.00">r</text>
+<polyline fill="none" stroke="yellow" points="310,-88.5 310,-124.5 "/>
+<text text-anchor="middle" x="324" y="-102.8" font-family="sans-serif" font-size="14.00">k</text>
+</g>
+<!-- rk_0_3&#45;&gt;block_3 -->
+<g id="edge4" class="edge">
+<title>rk_0_3&#45;&gt;block_3</title>
+<path fill="none" stroke="black" stroke-dasharray="1,5" d="M310.27,-88.43C309.94,-80.67 309.54,-71.28 309.17,-62.56"/>
+<polygon fill="black" stroke="black" points="312.66,-62.24 308.74,-52.4 305.67,-62.54 312.66,-62.24"/>
+</g>
+<!-- rk_0_2 -->
+<g id="node14" class="node">
+<title>rk_0_2</title>
+<polygon fill="yellow" stroke="yellow" points="203,-88.5 203,-124.5 257,-124.5 257,-88.5 203,-88.5"/>
+<text text-anchor="middle" x="216" y="-102.8" font-family="sans-serif" font-size="14.00">r</text>
+<polyline fill="none" stroke="yellow" points="229,-88.5 229,-124.5 "/>
+<text text-anchor="middle" x="243" y="-102.8" font-family="sans-serif" font-size="14.00">k</text>
+</g>
+<!-- rk_0_2&#45;&gt;block_2 -->
+<g id="edge3" class="edge">
+<title>rk_0_2&#45;&gt;block_2</title>
+<path fill="none" stroke="black" stroke-dasharray="1,5" d="M228.06,-88.43C227.18,-80.67 226.12,-71.28 225.13,-62.56"/>
+<polygon fill="black" stroke="black" points="228.58,-61.94 223.97,-52.4 221.62,-62.73 228.58,-61.94"/>
+</g>
+<!-- rk_0_1 -->
+<g id="node15" class="node">
+<title>rk_0_1</title>
+<polygon fill="yellow" stroke="yellow" points="120,-88.5 120,-124.5 174,-124.5 174,-88.5 120,-88.5"/>
+<text text-anchor="middle" x="133" y="-102.8" font-family="sans-serif" font-size="14.00">r</text>
+<polyline fill="none" stroke="yellow" points="146,-88.5 146,-124.5 "/>
+<text text-anchor="middle" x="160" y="-102.8" font-family="sans-serif" font-size="14.00">k</text>
+</g>
+<!-- rk_0_1&#45;&gt;block_1 -->
+<g id="edge2" class="edge">
+<title>rk_0_1&#45;&gt;block_1</title>
+<path fill="none" stroke="black" stroke-dasharray="1,5" d="M144.34,-88.43C143.13,-80.67 141.66,-71.28 140.3,-62.56"/>
+<polygon fill="black" stroke="black" points="143.71,-61.74 138.71,-52.4 136.8,-62.82 143.71,-61.74"/>
+</g>
+<!-- rk_0_0 -->
+<g id="node16" class="node">
+<title>rk_0_0</title>
+<polygon fill="yellow" stroke="yellow" points="30,-88.5 30,-124.5 84,-124.5 84,-88.5 30,-88.5"/>
+<text text-anchor="middle" x="43" y="-102.8" font-family="sans-serif" font-size="14.00">r</text>
+<polyline fill="none" stroke="yellow" points="56,-88.5 56,-124.5 "/>
+<text text-anchor="middle" x="70" y="-102.8" font-family="sans-serif" font-size="14.00">k</text>
+</g>
+<!-- rk_0_0&#45;&gt;block_0 -->
+<g id="edge1" class="edge">
+<title>rk_0_0&#45;&gt;block_0</title>
+<path fill="none" stroke="black" stroke-dasharray="1,5" d="M55.31,-88.43C54.53,-80.67 53.6,-71.28 52.74,-62.56"/>
+<polygon fill="black" stroke="black" points="56.2,-62 51.73,-52.4 49.23,-62.7 56.2,-62"/>
+</g>
+<!-- node_1_0 -->
+<g id="node17" class="node">
+<title>node_1_0</title>
+<polygon fill="lightblue" stroke="lightblue" points="215,-172.5 215,-208.5 269,-208.5 269,-172.5 215,-172.5"/>
+<text text-anchor="middle" x="242" y="-186.8" font-family="sans-serif" font-size="14.00">node</text>
+</g>
+<!-- node_1_0&#45;&gt;rk_0_1 -->
+<g id="edge10" class="edge">
+<title>node_1_0&#45;&gt;rk_0_1</title>
+<path fill="none" stroke="black" d="M215.66,-172.47C208.43,-167.44 200.73,-161.73 194,-156 185.56,-148.82 176.95,-140.33 169.44,-132.48"/>
+<polygon fill="black" stroke="black" points="171.74,-129.81 162.35,-124.91 166.63,-134.6 171.74,-129.81"/>
+</g>
+<!-- node_1_0&#45;&gt;rk_0_0 -->
+<g id="edge9" class="edge">
+<title>node_1_0&#45;&gt;rk_0_0</title>
+<path fill="none" stroke="black" d="M214.78,-186.41C187.28,-182.42 144.22,-173.77 111,-156 99.37,-149.78 88.22,-140.54 79.1,-131.78"/>
+<polygon fill="black" stroke="black" points="81.5,-129.23 71.96,-124.62 76.54,-134.17 81.5,-129.23"/>
+</g>
+<!-- node_1_1 -->
+<g id="node18" class="node">
+<title>node_1_1</title>
+<polygon fill="lightblue" stroke="lightblue" points="287,-172.5 287,-208.5 341,-208.5 341,-172.5 287,-172.5"/>
+<text text-anchor="middle" x="314" y="-186.8" font-family="sans-serif" font-size="14.00">node</text>
+</g>
+<!-- node_1_1&#45;&gt;rk_0_3 -->
+<g id="edge12" class="edge">
+<title>node_1_1&#45;&gt;rk_0_3</title>
+<path fill="none" stroke="black" d="M313.36,-172.11C312.97,-161.27 312.45,-147.1 312,-134.79"/>
+<polygon fill="black" stroke="black" points="315.49,-134.45 311.63,-124.58 308.49,-134.71 315.49,-134.45"/>
+</g>
+<!-- node_1_1&#45;&gt;rk_0_2 -->
+<g id="edge11" class="edge">
+<title>node_1_1&#45;&gt;rk_0_2</title>
+<path fill="none" stroke="black" d="M292.97,-172.19C287.04,-167.11 280.66,-161.45 275,-156 267.18,-148.47 259,-139.89 251.79,-132.07"/>
+<polygon fill="black" stroke="black" points="254.28,-129.6 244.96,-124.55 249.1,-134.31 254.28,-129.6"/>
+</g>
+<!-- node_1_2 -->
+<g id="node19" class="node">
+<title>node_1_2</title>
+<polygon fill="lightblue" stroke="lightblue" points="359,-172.5 359,-208.5 413,-208.5 413,-172.5 359,-172.5"/>
+<text text-anchor="middle" x="386" y="-186.8" font-family="sans-serif" font-size="14.00">node</text>
+</g>
+<!-- node_1_2&#45;&gt;rk_0_5 -->
+<g id="edge14" class="edge">
+<title>node_1_2&#45;&gt;rk_0_5</title>
+<path fill="none" stroke="black" d="M407.57,-172.21C413.65,-167.12 420.19,-161.46 426,-156 433.99,-148.49 442.35,-139.91 449.72,-132.08"/>
+<polygon fill="black" stroke="black" points="452.46,-134.28 456.7,-124.57 447.33,-129.51 452.46,-134.28"/>
+</g>
+<!-- node_1_2&#45;&gt;rk_0_4 -->
+<g id="edge13" class="edge">
+<title>node_1_2&#45;&gt;rk_0_4</title>
+<path fill="none" stroke="black" d="M386.85,-172.11C387.38,-161.27 388.07,-147.1 388.67,-134.79"/>
+<polygon fill="black" stroke="black" points="392.18,-134.74 389.17,-124.58 385.18,-134.4 392.18,-134.74"/>
+</g>
+<!-- node_1_3 -->
+<g id="node20" class="node">
+<title>node_1_3</title>
+<polygon fill="lightblue" stroke="lightblue" points="431,-172.5 431,-208.5 485,-208.5 485,-172.5 431,-172.5"/>
+<text text-anchor="middle" x="458" y="-186.8" font-family="sans-serif" font-size="14.00">node</text>
+</g>
+<!-- node_1_3&#45;&gt;rk_0_7 -->
+<g id="edge16" class="edge">
+<title>node_1_3&#45;&gt;rk_0_7</title>
+<path fill="none" stroke="black" d="M485.24,-186.97C513.48,-183.41 558.15,-175.05 592,-156 602.7,-149.98 612.7,-140.99 620.83,-132.39"/>
+<polygon fill="black" stroke="black" points="623.67,-134.47 627.74,-124.69 618.46,-129.79 623.67,-134.47"/>
+</g>
+<!-- node_1_3&#45;&gt;rk_0_6 -->
+<g id="edge15" class="edge">
+<title>node_1_3&#45;&gt;rk_0_6</title>
+<path fill="none" stroke="black" d="M485.18,-172.72C492.79,-167.64 500.91,-161.86 508,-156 516.77,-148.76 525.71,-140.13 533.46,-132.17"/>
+<polygon fill="black" stroke="black" points="536.4,-134.16 540.77,-124.51 531.33,-129.33 536.4,-134.16"/>
+</g>
+<!-- rk_1_3 -->
+<g id="node21" class="node">
+<title>rk_1_3</title>
+<polygon fill="yellow" stroke="yellow" points="431,-245.5 431,-281.5 485,-281.5 485,-245.5 431,-245.5"/>
+<text text-anchor="middle" x="444" y="-259.8" font-family="sans-serif" font-size="14.00">r</text>
+<polyline fill="none" stroke="yellow" points="457,-245.5 457,-281.5 "/>
+<text text-anchor="middle" x="471" y="-259.8" font-family="sans-serif" font-size="14.00">k</text>
+</g>
+<!-- rk_1_3&#45;&gt;node_1_3 -->
+<g id="edge20" class="edge">
+<title>rk_1_3&#45;&gt;node_1_3</title>
+<path fill="none" stroke="black" stroke-dasharray="1,5" d="M458,-245.31C458,-237.29 458,-227.55 458,-218.57"/>
+<polygon fill="black" stroke="black" points="461.5,-218.53 458,-208.53 454.5,-218.53 461.5,-218.53"/>
+</g>
+<!-- rk_1_2 -->
+<g id="node22" class="node">
+<title>rk_1_2</title>
+<polygon fill="yellow" stroke="yellow" points="359,-245.5 359,-281.5 413,-281.5 413,-245.5 359,-245.5"/>
+<text text-anchor="middle" x="372" y="-259.8" font-family="sans-serif" font-size="14.00">r</text>
+<polyline fill="none" stroke="yellow" points="385,-245.5 385,-281.5 "/>
+<text text-anchor="middle" x="399" y="-259.8" font-family="sans-serif" font-size="14.00">k</text>
+</g>
+<!-- rk_1_2&#45;&gt;node_1_2 -->
+<g id="edge19" class="edge">
+<title>rk_1_2&#45;&gt;node_1_2</title>
+<path fill="none" stroke="black" stroke-dasharray="1,5" d="M386,-245.31C386,-237.29 386,-227.55 386,-218.57"/>
+<polygon fill="black" stroke="black" points="389.5,-218.53 386,-208.53 382.5,-218.53 389.5,-218.53"/>
+</g>
+<!-- rk_1_1 -->
+<g id="node23" class="node">
+<title>rk_1_1</title>
+<polygon fill="yellow" stroke="yellow" points="287,-245.5 287,-281.5 341,-281.5 341,-245.5 287,-245.5"/>
+<text text-anchor="middle" x="300" y="-259.8" font-family="sans-serif" font-size="14.00">r</text>
+<polyline fill="none" stroke="yellow" points="313,-245.5 313,-281.5 "/>
+<text text-anchor="middle" x="327" y="-259.8" font-family="sans-serif" font-size="14.00">k</text>
+</g>
+<!-- rk_1_1&#45;&gt;node_1_1 -->
+<g id="edge18" class="edge">
+<title>rk_1_1&#45;&gt;node_1_1</title>
+<path fill="none" stroke="black" stroke-dasharray="1,5" d="M314,-245.31C314,-237.29 314,-227.55 314,-218.57"/>
+<polygon fill="black" stroke="black" points="317.5,-218.53 314,-208.53 310.5,-218.53 317.5,-218.53"/>
+</g>
+<!-- rk_1_0 -->
+<g id="node24" class="node">
+<title>rk_1_0</title>
+<polygon fill="yellow" stroke="yellow" points="215,-245.5 215,-281.5 269,-281.5 269,-245.5 215,-245.5"/>
+<text text-anchor="middle" x="228" y="-259.8" font-family="sans-serif" font-size="14.00">r</text>
+<polyline fill="none" stroke="yellow" points="241,-245.5 241,-281.5 "/>
+<text text-anchor="middle" x="255" y="-259.8" font-family="sans-serif" font-size="14.00">k</text>
+</g>
+<!-- rk_1_0&#45;&gt;node_1_0 -->
+<g id="edge17" class="edge">
+<title>rk_1_0&#45;&gt;node_1_0</title>
+<path fill="none" stroke="black" stroke-dasharray="1,5" d="M242,-245.31C242,-237.29 242,-227.55 242,-218.57"/>
+<polygon fill="black" stroke="black" points="245.5,-218.53 242,-208.53 238.5,-218.53 245.5,-218.53"/>
+</g>
+<!-- node_2_1 -->
+<g id="node25" class="node">
+<title>node_2_1</title>
+<polygon fill="lightblue" stroke="lightblue" points="359,-329.5 359,-365.5 413,-365.5 413,-329.5 359,-329.5"/>
+<text text-anchor="middle" x="386" y="-343.8" font-family="sans-serif" font-size="14.00">node</text>
+</g>
+<!-- node_2_1&#45;&gt;rk_1_3 -->
+<g id="edge24" class="edge">
+<title>node_2_1&#45;&gt;rk_1_3</title>
+<path fill="none" stroke="black" d="M405.69,-329.39C411.17,-324.31 416.99,-318.6 422,-313 428.33,-305.92 434.69,-297.78 440.26,-290.22"/>
+<polygon fill="black" stroke="black" points="443.39,-291.86 446.39,-281.7 437.71,-287.77 443.39,-291.86"/>
+</g>
+<!-- node_2_1&#45;&gt;rk_1_2 -->
+<g id="edge23" class="edge">
+<title>node_2_1&#45;&gt;rk_1_2</title>
+<path fill="none" stroke="black" d="M386,-329.11C386,-318.27 386,-304.1 386,-291.79"/>
+<polygon fill="black" stroke="black" points="389.5,-291.58 386,-281.58 382.5,-291.58 389.5,-291.58"/>
+</g>
+<!-- node_2_0 -->
+<g id="node26" class="node">
+<title>node_2_0</title>
+<polygon fill="lightblue" stroke="lightblue" points="287,-329.5 287,-365.5 341,-365.5 341,-329.5 287,-329.5"/>
+<text text-anchor="middle" x="314" y="-343.8" font-family="sans-serif" font-size="14.00">node</text>
+</g>
+<!-- node_2_0&#45;&gt;rk_1_1 -->
+<g id="edge22" class="edge">
+<title>node_2_0&#45;&gt;rk_1_1</title>
+<path fill="none" stroke="black" d="M314,-329.11C314,-318.27 314,-304.1 314,-291.79"/>
+<polygon fill="black" stroke="black" points="317.5,-291.58 314,-281.58 310.5,-291.58 317.5,-291.58"/>
+</g>
+<!-- node_2_0&#45;&gt;rk_1_0 -->
+<g id="edge21" class="edge">
+<title>node_2_0&#45;&gt;rk_1_0</title>
+<path fill="none" stroke="black" d="M294.31,-329.39C288.83,-324.31 283.01,-318.6 278,-313 271.67,-305.92 265.31,-297.78 259.74,-290.22"/>
+<polygon fill="black" stroke="black" points="262.29,-287.77 253.61,-281.7 256.61,-291.86 262.29,-287.77"/>
+</g>
+<!-- rk_2_1 -->
+<g id="node27" class="node">
+<title>rk_2_1</title>
+<polygon fill="yellow" stroke="yellow" points="359,-402.5 359,-438.5 413,-438.5 413,-402.5 359,-402.5"/>
+<text text-anchor="middle" x="372" y="-416.8" font-family="sans-serif" font-size="14.00">r</text>
+<polyline fill="none" stroke="yellow" points="385,-402.5 385,-438.5 "/>
+<text text-anchor="middle" x="399" y="-416.8" font-family="sans-serif" font-size="14.00">k</text>
+</g>
+<!-- rk_2_1&#45;&gt;node_2_1 -->
+<g id="edge26" class="edge">
+<title>rk_2_1&#45;&gt;node_2_1</title>
+<path fill="none" stroke="black" stroke-dasharray="1,5" d="M386,-402.31C386,-394.29 386,-384.55 386,-375.57"/>
+<polygon fill="black" stroke="black" points="389.5,-375.53 386,-365.53 382.5,-375.53 389.5,-375.53"/>
+</g>
+<!-- rk_2_0 -->
+<g id="node28" class="node">
+<title>rk_2_0</title>
+<polygon fill="yellow" stroke="yellow" points="287,-402.5 287,-438.5 341,-438.5 341,-402.5 287,-402.5"/>
+<text text-anchor="middle" x="300" y="-416.8" font-family="sans-serif" font-size="14.00">r</text>
+<polyline fill="none" stroke="yellow" points="313,-402.5 313,-438.5 "/>
+<text text-anchor="middle" x="327" y="-416.8" font-family="sans-serif" font-size="14.00">k</text>
+</g>
+<!-- rk_2_0&#45;&gt;node_2_0 -->
+<g id="edge25" class="edge">
+<title>rk_2_0&#45;&gt;node_2_0</title>
+<path fill="none" stroke="black" stroke-dasharray="1,5" d="M314,-402.31C314,-394.29 314,-384.55 314,-375.57"/>
+<polygon fill="black" stroke="black" points="317.5,-375.53 314,-365.53 310.5,-375.53 317.5,-375.53"/>
+</g>
+<!-- node_3_0 -->
+<g id="node29" class="node">
+<title>node_3_0</title>
+<polygon fill="lightblue" stroke="lightblue" points="323,-486.5 323,-522.5 377,-522.5 377,-486.5 323,-486.5"/>
+<text text-anchor="middle" x="350" y="-500.8" font-family="sans-serif" font-size="14.00">node</text>
+</g>
+<!-- node_3_0&#45;&gt;rk_2_1 -->
+<g id="edge27" class="edge">
+<title>node_3_0&#45;&gt;rk_2_1</title>
+<path fill="none" stroke="black" d="M357.63,-486.11C362.49,-475.06 368.87,-460.53 374.34,-448.05"/>
+<polygon fill="black" stroke="black" points="377.68,-449.15 378.5,-438.58 371.28,-446.33 377.68,-449.15"/>
+</g>
+<!-- node_3_0&#45;&gt;rk_2_0 -->
+<g id="edge28" class="edge">
+<title>node_3_0&#45;&gt;rk_2_0</title>
+<path fill="none" stroke="black" d="M342.37,-486.11C337.51,-475.06 331.13,-460.53 325.66,-448.05"/>
+<polygon fill="black" stroke="black" points="328.72,-446.33 321.5,-438.58 322.32,-449.15 328.72,-446.33"/>
+</g>
+<!-- rk_3_0 -->
+<g id="node30" class="node">
+<title>rk_3_0</title>
+<polygon fill="yellow" stroke="yellow" points="323,-559.5 323,-595.5 377,-595.5 377,-559.5 323,-559.5"/>
+<text text-anchor="middle" x="336" y="-573.8" font-family="sans-serif" font-size="14.00">r</text>
+<polyline fill="none" stroke="yellow" points="349,-559.5 349,-595.5 "/>
+<text text-anchor="middle" x="363" y="-573.8" font-family="sans-serif" font-size="14.00">k</text>
+</g>
+<!-- rk_3_0&#45;&gt;node_3_0 -->
+<g id="edge29" class="edge">
+<title>rk_3_0&#45;&gt;node_3_0</title>
+<path fill="none" stroke="black" stroke-dasharray="1,5" d="M350,-559.31C350,-551.29 350,-541.55 350,-532.57"/>
+<polygon fill="black" stroke="black" points="353.5,-532.53 350,-522.53 346.5,-532.53 353.5,-532.53"/>
+</g>
+</g>
+</svg>
+</div>
+<div class="title">Figure 1. Encoding of content as tree. Solid edges are concatenations of reference-key pairs as described in <a href="#_collect_reference_key_pairs_in_nodes">Section 2.4.3</a>. Dotted edges are encryption and computation of reference-key pairs as described in <a href="#_encrypt_block_and_compute_reference_key_pair">Section 2.4.2</a>.</div>
+</div>
+<div class="paragraph">
+<p>The block size, the level of the root reference and the root reference-key pair itself are the necessary pieces of information required to decode content. The tuple consisting of block size, level, root reference and key is called the <em>read capability</em>.</p>
+</div>
+<div class="paragraph">
+<p>The encrypted blocks and the read capability are the outputs of the encoding process.</p>
+</div>
+<div class="paragraph">
+<p>A pseudo-code implementation of the encoding process is provided in the following. Note that the pseudo-code implementation is naive and given for illustration purposes only. It is RECOMMENDED that imlementations use a streaming encoding process (as described in <a href="#_streaming">Section 2.4.4</a>) which allows encoding of content larger than the available memory.</p>
+</div>
+<div class="listingblock">
+<div class="content">
+<pre class="highlight"><code class="language-pseudocode" data-lang="pseudocode">ERIS-Encode(CONTENT, CONVERGENCE-SECRET, BLOCK-SIZE):
+ // initialize empty list of blocks to be output
+ BLOCKS := []
+
+ // initialize level to 0
+ LEVEL := 0
+
+ // split the input content into uniformly sized blocks and encode
+ LEVEL-0-BLOCKS, RK-PAIRS := Split-Content(CONTENT, BLOCK-SIZE)
+
+ // add blocks from level 0 to blocks to be output
+ BLOCKS := BLOCKS ++ LEVEL-0-BLOCKS
+
+ // loop until there is a single root reference
+ WHILE Length(RK-PAIRS) &gt; 1:
+ LEVEL-BLOCKS, RK-Pairs := Collect-RK-Pairs(RK-PAIRS, CONVERGENCE-SECRET, BLOCK-SIZE)
+
+ // add blocks to blocks to be output and increase the level counter
+ BLOCKS := BLOCKS ++ LEVEL-BLOCKS
+ LEVEL := LEVEL + 1
+
+ // extract the root reference-key pair
+ ROOT-RK-PAIR := RK-PAIRS[0]
+ ROOT-REFERENCE, ROOT-KEY := ROOT-RK-PAIR
+
+ // return blocks and read-capability
+ RETURN BLOCKS, BLOCK-SIZE, LEVEL, ROOT-REFERENCE, ROOT-KEY</code></pre>
+</div>
+</div>
+<div class="paragraph">
+<p>The sub-process <code>Split-Content</code> and <code>Collect-RK-Pairs</code> are explained in the following sections.</p>
+</div>
+<div class="sect3">
+<h4 id="_splitting_input_content_into_blocks"><a class="anchor" href="#_splitting_input_content_into_blocks"></a>2.4.1. Splitting Input Content into Blocks</h4>
+<div class="paragraph">
+<p>Input content is split into blocks of size at most block size such that only the last content block may be smaller than block size.</p>
+</div>
+<div class="paragraph">
+<p>The last content block is always padded according to the padding algorithm to block size. If the size of the padded last block is larger than block size it is split into content blocks of block size.</p>
+</div>
+<div class="paragraph">
+<p>A pseudo code implementation:</p>
+</div>
+<div class="listingblock">
+<div class="content">
+<pre class="highlight"><code class="language-pseudocode" data-lang="pseudocode">Split-Content(CONTENT,CONVERGENCE-SECRET,BLOCK-SIZE):
+ // initialize list of blocks and reference-key pairs to output
+ BLOCKS := []
+ RK-PAIRS := []
+
+ // read blocks of size BLOCK-SIZE from CONTENT
+ WHILE CONTENT-BLOCK, LAST? := READ(CONTENT, BLOCK-SIZE):
+
+ IF LAST?:
+ // pad block if it is the last
+ PADDED := PAD(CONTENT-BLOCK, BLOCK-SIZE)
+
+ IF Length(PADDED) &gt; BLOCK-SIZE:
+ PADDED-0, PADDED-1 := SPLIT(PADDED, BLOCK-SIZE)
+ ENCRYPTED-BLOCK-0, RK-PAIR-0 := Encrypt-Block(PADDED-0, CONVERGENCE-SECRET)
+ ENCRYPTED-BLOCK-1, RK-PAIR-1 := Encrypt-Block(PADDED-1, CONVERGENCE-SECRET)
+ BLOCKS := BLOCKS ++ [ENCRYPTED-BLOCK-0, ENCRYPTED-BLOCK-1]
+ RK-PAIRS := RK-PAIRS ++ [RK-PAIR-0, RK-PAIR-1]
+ ELSE:
+ ENCRYPTED-BLOCK, RK-PAIR := Encrypt-Block(PADDED, CONVERGENCE-SECRET)
+ BLOCKS := BLOCKS ++ [ENCRYPTED-BLOCK]
+ RK-PAIRS := RK-PAIRS ++ [RK-PAIR]
+
+ ELSE:
+ ENCRYPTED-BLOCK, RK-PAIR := Encrypt-Block(CONTENT-BLOCK, CONVERGENCE-SECRET)
+ BLOCKS := BLOCKS ++ [ENCRYPTED-BLOCK]
+ RK-PAIRS := RK-PAIRS ++ [RK-PAIR]
+
+ RETURN BLOCKS, RK-PAIRS</code></pre>
+</div>
+</div>
+<div class="admonitionblock note">
+<table>
+<tr>
+<td class="icon">
+<div class="title">Note</div>
+</td>
+<td class="content">
+If the length of the last content block is exactly block size, then padding will result in a padded block that is double the block size and must be split.
+</td>
+</tr>
+</table>
+</div>
+</div>
+<div class="sect3">
+<h4 id="_encrypt_block_and_compute_reference_key_pair"><a class="anchor" href="#_encrypt_block_and_compute_reference_key_pair"></a>2.4.2. Encrypt Block and Compute Reference-Key Pair</h4>
+<div class="paragraph">
+<p>A <em>reference-key pair</em> is a pair consisting of a reference to an encrypted block and the key to decrypt the block. Reference and key are both 32 bytes long. The concatenation of a reference-key pair is 64 bytes long (512 bits).</p>
+</div>
+<div class="paragraph">
+<p>The <code>Encrypt-Block</code> function encrypts a block and returns the encrypted block along with the reference-key pair:</p>
+</div>
+<div class="listingblock">
+<div class="content">
+<pre class="highlight"><code class="language-pseudocode" data-lang="pseudocode">Encrypt-Block(INPUT, CONVERGENCE-SECRET):
+ KEY := Blake2b-256(INPUT,CONVERGENCE-SECRET)
+ ENCRYPTED-BLOCK := ChaCha20(INPUT,KEY)
+ REFERENCE := Blake2b-256(ENCRYPTED-BLOCK)
+ RETURN ENCRYPTED-BLOCK, REFERENCE, KEY</code></pre>
+</div>
+</div>
+<div class="paragraph">
+<p>The convergence-secret MUST NOT be used to compute the reference to the encrypted block.</p>
+</div>
+</div>
+<div class="sect3">
+<h4 id="_collect_reference_key_pairs_in_nodes"><a class="anchor" href="#_collect_reference_key_pairs_in_nodes"></a>2.4.3. Collect Reference-Key Pairs in Nodes</h4>
+<div class="paragraph">
+<p>Reference-key pairs are collected into nodes of size block size by concatenating reference-key pair. The node is encrypted, and a reference-key pair to the node is computed. This results in a sequence of reference-key pairs that refer to nodes containing reference-key pairs at a lower level - a tree.</p>
+</div>
+<div class="paragraph">
+<p>If there are less than arity number of references-key pairs to collect in a node, then the node is filled with missing number of <em>null reference-key pairs</em> - 64 bytes of zeros. The size of a node is always equal the block size (implemented with the <code>FILL-WITH-NULL-RK-PAIRS</code> function).</p>
+</div>
+<div class="paragraph">
+<p>A pseudo-code implementation of <code>Collect-RK-Pairs</code>:</p>
+</div>
+<div class="listingblock">
+<div class="content">
+<pre class="highlight"><code class="language-pseudocode" data-lang="pseudocode">Collect-RK-Pairs(INPUT-RK-PAIRS, CONVERGENCE-SECRET, BLOCK-SIZE):
+ // number of reference-key pairs in a node
+ ARITY := BLOCK-SIZE / 64
+
+ // initialize blocks and reference-key pairs to output
+ BLOCKS := []
+ OUTPUT-RK-PAIRS := []
+
+ // take ARITY reference-key pairs from INPUT-RK-PAIRS at a time
+ WHILE RK-PAIRS-FOR-NODE := TAKE(INPUT-RK-PAIRS, ARITY):
+ // make sure there are exactly ARITY reference-key pairs in node
+ RK-PAIRS-FOR-NODE := FILL-WITH-NULL-RK-PAIRS(RK-PAIRS-FOR-NODE, ARITY)
+
+ // concat reference-key pairs to node
+ NODE := CONCAT(RK-PAIRS-FOR-NODE)
+
+ // encrypt node and compute reference-key pair
+ BLOCK, RK-TO-NODE := Encrypt-Block(NODE, CONVERGENCE-SECRET)
+
+ // add node to output
+ BLOCKS := BLOCKS ++ [BLOCK]
+ OUTPUT-RK-PAIRS := OUTPUT-RK-PAIRS ++ [RK-TO-NODE]
+
+ RETURN BLOCKS, OUTPUT-RK-PAIRS</code></pre>
+</div>
+</div>
+</div>
+<div class="sect3">
+<h4 id="_streaming"><a class="anchor" href="#_streaming"></a>2.4.4. Streaming</h4>
+<div class="paragraph">
+<p>The encoding process can be implemented to encode a stream of content while immediately outputting encrypted blocks when ready and eagerly collecting reference-key pairs to nodes. This allows the encoding of larger-than-memory content.</p>
+</div>
+<div class="paragraph">
+<p>For an example, see <a href="https://gitlab.com/openengiadina/eris/-/raw/main/eris/encode.scm">the reference Guile implementation</a>.</p>
+</div>
+</div>
+</div>
+<div class="sect2">
+<h3 id="_decoding"><a class="anchor" href="#_decoding"></a>2.5. Decoding</h3>
+<div class="paragraph">
+<p>Given an ERIS read capability and access to blocks via a block-storage the content can be decoded.</p>
+</div>
+<div class="listingblock">
+<div class="content">
+<pre class="highlight"><code class="language-pseudocode" data-lang="pseudocode">ERIS-Decode-Recurse(LEVEL, REFERENCE, KEY):
+ IF LEVEL == 0:
+ ENCRYPTED-CONTENT-BLOCK := Block-Storage-Get(REFERENCE)
+ RETURN ChaCha20(CONTENT-BLOCK, KEY)
+ ELSE:
+ ENCRYPTED-NODE := Block-Storage-Get(REFERENCE)
+ NODE := ChaCha20(ENCRYPTED, KEY)
+ OUTPUT := []
+ WHILE SUB-REFERENCE, SUB-KEY := Read-RK-Pair-From-Node(NODE):
+ OUTPUT := OUTPUT ++ [ERIS-DECODE-Recurse(LEVEL - 1, SUB-REFERENCE, SUB-KEY)]
+ RETURN CONCAT(OUTPUT)
+
+ERIS-Decode(BLOCK-SIZE, LEVEL, ROOT-REFERENCE, ROOT-KEY):
+ PADDED := ERIS-Decode-Recurse(LEVEL, ROOT-REFERENCE, ROOT-KEY)
+ RETURN UNPAD(PADDED, BLOCK-SIZE)</code></pre>
+</div>
+</div>
+<div class="paragraph">
+<p>Where the block-storage can be accessed as follows:</p>
+</div>
+<div class="dlist">
+<dl>
+<dt class="hdlist1"><code>Block-Storage-Get(REFERENCE)</code> </dt>
+<dd>
+<p>Returns a block such that <code>Blake2b-256(Block-Storage-Get(REFERENCE)) == REFERENCE</code> or throws an error.</p>
+</dd>
+</dl>
+</div>
+<div class="paragraph">
+<p>A streaming decoding procedure can be implemented where the content can be output block wise and does not need to be kept in memory for unpadding. For an example, see <a href="https://gitlab.com/openengiadina/eris/-/raw/main/eris/decode.scm">the reference Guile implementation</a>.</p>
+</div>
+<div class="sect3">
+<h4 id="_random_access"><a class="anchor" href="#_random_access"></a>2.5.1. Random Access</h4>
+<div class="paragraph">
+<p>A decoder that allows random access to the encoded content can be implemented by decoding selected sub-trees.</p>
+</div>
+</div>
+</div>
+<div class="sect2">
+<h3 id="_binary_encoding_of_read_capability"><a class="anchor" href="#_binary_encoding_of_read_capability"></a>2.6. Binary Encoding of Read Capability</h3>
+<div class="paragraph">
+<p>The read-capability consisting of the block-size, level of root reference-key pair as well as the root reference-key pair form the necessary pieces of information required to decode content.</p>
+</div>
+<div class="paragraph">
+<p>We specify an binary encoding of the read-capability 66 bytes:</p>
+</div>
+<table class="tableblock frame-all grid-all stretch">
+<colgroup>
+<col style="width: 33.3333%;">
+<col style="width: 33.3333%;">
+<col style="width: 33.3334%;">
+</colgroup>
+<thead>
+<tr>
+<th class="tableblock halign-left valign-top">Byte offset</th>
+<th class="tableblock halign-left valign-top">Content</th>
+<th class="tableblock halign-left valign-top">Length (in bytes)</th>
+</tr>
+</thead>
+<tbody>
+<tr>
+<td class="tableblock halign-left valign-top"><p class="tableblock">0</p></td>
+<td class="tableblock halign-left valign-top"><p class="tableblock">block size (<code>0x00</code> for block size 1KiB and <code>0x01</code> for block size 32KiB)</p></td>
+<td class="tableblock halign-left valign-top"><p class="tableblock">1</p></td>
+</tr>
+<tr>
+<td class="tableblock halign-left valign-top"><p class="tableblock">1</p></td>
+<td class="tableblock halign-left valign-top"><p class="tableblock">level of root reference-key pair as unsigned integer</p></td>
+<td class="tableblock halign-left valign-top"><p class="tableblock">1</p></td>
+</tr>
+<tr>
+<td class="tableblock halign-left valign-top"><p class="tableblock">2</p></td>
+<td class="tableblock halign-left valign-top"><p class="tableblock">root reference</p></td>
+<td class="tableblock halign-left valign-top"><p class="tableblock">32</p></td>
+</tr>
+<tr>
+<td class="tableblock halign-left valign-top"><p class="tableblock">34</p></td>
+<td class="tableblock halign-left valign-top"><p class="tableblock">root key</p></td>
+<td class="tableblock halign-left valign-top"><p class="tableblock">32</p></td>
+</tr>
+</tbody>
+</table>
+<div class="paragraph">
+<p>The initial field (block size) also encodes the ERIS version. Future versions of ERIS MUST use different codes to encode block sizes.</p>
+</div>
+<div class="paragraph">
+<p>Note that using a single byte to encode the level limits the size of content that can be encoded with ERIS. However, the size of the largest encodable content is approximately 1e300 TiB, which seems to be sufficient for any conceivable practical applications (including an index of all atoms in the universe).</p>
+</div>
+</div>
+<div class="sect2">
+<h3 id="_urn"><a class="anchor" href="#_urn"></a>2.7. URN</h3>
+<div class="paragraph">
+<p>A read-capability can be encoded as an URN: <code>urn:erisx2:BASE32-READ-CAPABILITY</code>, where <code>BASE32-READ-CAPABILITY</code> is the unpadded Base32 <a href="#RFC4648">[RFC4648]</a> encoding of the read capability.</p>
+</div>
+<div class="paragraph">
+<p>For example the ERIS URN of the UTF-8 encoded string "Hello world!" (with block size 1KiB and null convergence secret):</p>
+</div>
+<div class="paragraph">
+<p><code>urn:erisx2:AAAD77QDJMFAKZYH2DXBUZYAP3MXZ3DJZVFYQ5DFWC6T65WSFCU5S2IT4YZGJ7AC4SYQMP2DM2ANS2ZTCP3DJJIRV733CRAAHOSWIYZM3M</code></p>
+</div>
+<div class="admonitionblock note">
+<table>
+<tr>
+<td class="icon">
+<div class="title">Note</div>
+</td>
+<td class="content">
+<div class="paragraph">
+<p>The URN namespace <code>erisx2</code> is used for this experimental version of the encoding. Once finalized the namespace <code>eris</code> will be used (e.g. <code>urn:eris:AAAD77QDJMFAKZYH2DXBUZYAP3MXZ3DJZVFYQ5DFWC6T65WSFCU5S2IT4YZGJ7AC4SYQMP2DM2ANS2ZTCP3DJJIRV733CRAAHOSWIYZM3M</code>)</p>
+</div>
+</td>
+</tr>
+</table>
+</div>
+</div>
+</div>
+</div>
+<div class="sect1">
+<h2 id="_applications"><a class="anchor" href="#_applications"></a>3. Applications</h2>
+<div class="sectionbody">
+<div class="paragraph">
+<p>Traditionally encoding schemes similar to ERIS are used for peer-to-peer filesharing. We hope to motivate usage for a much wider scope of applications.</p>
+</div>
+<div class="paragraph">
+<p>As part of the <a href="https://openengiadina.net">openEngiadina</a> project we are using ERIS to encode small bits of information that constitute "local knowledge" (e.g. geogrpahic information, social and cultural events, etc.) along with the social interactions that created and curated this information (using the ActivityStreams vocabulary <a href="#ActivityStreams">[ActivityStreams]</a>). ERIS allows such information to be securely cached on multiple peers to increase the robustness of the system.</p>
+</div>
+<div class="paragraph">
+<p>ERIS encoded content can be used from existing web technology and RDF as the content can be referenced by an URN. At the same time more decentralized networks can be used (this will be further research as part of the <a href="https://dream.public.cat/">DREAM</a> project).</p>
+</div>
+<div class="paragraph">
+<p>Other possible applications include package managers such as <a href="https://guix.gnu.org/">Guix</a> to increase availability of software sources and built packages or decentralized and offline-first mapping applications.</p>
+</div>
+<div class="sect2">
+<h3 id="_storage_and_transport_layers"><a class="anchor" href="#_storage_and_transport_layers"></a>3.1. Storage and Transport Layers</h3>
+<div class="paragraph">
+<p>ERIS is defined indepenedant of any storage and transport layer for blocks. The only requireiment is that blocks can be accessed by their reference - the hash of the block content.</p>
+</div>
+<div class="paragraph">
+<p>Possible storage layers include:</p>
+</div>
+<div class="ulist">
+<ul>
+<li>
+<p>in-memory hash-map</p>
+</li>
+<li>
+<p>key-value store</p>
+</li>
+<li>
+<p>files on a file system</p>
+</li>
+</ul>
+</div>
+<div class="paragraph">
+<p>Transport mechanisms include:</p>
+</div>
+<div class="ulist">
+<ul>
+<li>
+<p>HTTP: A simple HTTP endpoint can be used to dereference blocks</p>
+</li>
+<li>
+<p>Sneakernet: Blocks can be transported on a physical medium such as a USB stick</p>
+</li>
+</ul>
+</div>
+<div class="paragraph">
+<p>More interesting transport and storage layers use the fact that blocks are content-addressed. For example the peer-to-peer network <a href="https://ipfs.io/">IPFS</a> can be used to store and transport blocks (see the <a href="https://gitlab.com/openengiadina/eris/-/blob/main/examples/ipfs.org">example</a> using the reference Guile implementation). The major advantages over using IPFS directly include:</p>
+</div>
+<div class="ulist">
+<ul>
+<li>
+<p>Content is encrypted and not readable to IPFS peers without the read capability.</p>
+</li>
+<li>
+<p>Identifier of blocks and encoded content is not tied to the IPFS network. Applications can transparently use IPFS or any other storage/transport mechanism.</p>
+</li>
+</ul>
+</div>
+<div class="paragraph">
+<p>It also seems possible to use the <a href="https://named-data.net/">Named Data Networking</a> infrastructure and forwarding daemons (initial support for using Blake2b as hash function is present in the <a href="https://github.com/named-data/ndn-cxx">ndn-cxx library</a>).</p>
+</div>
+</div>
+<div class="sect2">
+<h3 id="_authenticity_of_content"><a class="anchor" href="#_authenticity_of_content"></a>3.2. Authenticity of Content</h3>
+<div class="paragraph">
+<p>The presented encoding ensures integrity of content. Content can not be tampered with wihtout changing the identifier (read capability) of the content. To prove authenticity of encoded content it is sufficient to cryptographically sign the read capability.</p>
+</div>
+<div class="paragraph">
+<p>We have presented a concrete proposal on how this might be done using a RDF vocabulary and the Ed25519 cryptographic signature scheme <a href="#RDF-Signify">[RDF-Signify]</a>.</p>
+</div>
+</div>
+<div class="sect2">
+<h3 id="_mutability_and_namespaces"><a class="anchor" href="#_mutability_and_namespaces"></a>3.3. Mutability and Namespaces</h3>
+<div class="paragraph">
+<p>Encoded content is immutable in the sense that changing the encoded content results in a new identifier. Existing references to the old content need to be updated. This is a property that makes caching efficient and allows ERIS to be used for robust systems.</p>
+</div>
+<div class="paragraph">
+<p>Nevertheless, there are applications where one wants to reference mutable content. Examples include user profiles or dynamic collections of content. Making small changes to a user profile or adding a piece of content to a collection should preserve the identifiers.</p>
+</div>
+<div class="paragraph">
+<p>There are many ways of implementing such mutability or "namespaces". ERIS does not specify any particular mechanism. Possible mechanisms include:</p>
+</div>
+<div class="ulist">
+<ul>
+<li>
+<p>Centralized servers that returns a mutable list of reference to (immutable) content. This is how most HTTP services work.</p>
+</li>
+<li>
+<p>Append-only logs where changes are securely appended with cryptographic signatures. The state is computed from the log of changes. This is how peer-to-peer systems such as <a href="https://hypercore-protocol.org/">hypercore</a> or <a href="https://scuttlebutt.nz/">Secure ScuttleButt</a> work.</p>
+</li>
+<li>
+<p>Petname system: A system where a dynamic local name can be mapped to a reference. Sophisticated systems that allow delegation of naming authority include <a href="https://gnunet.org/en/gns.html">the GNU Name System</a>.</p>
+</li>
+<li>
+<p>Commutative Replicated Data Types (CRDTs) are distributed datastructures similar to append-only logs with the advantage that the state of a mutable container can diverge and converge to consistent state eventually. Such structures seem especially suitable when control over a mutable container is shared by multiple parties. We have made a concrete proposal for such mutable containers <a href="#DMC">[DMC]</a>.</p>
+</li>
+</ul>
+</div>
+<div class="paragraph">
+<p>We believe that the best suited mechanism for handling mutability depends on concrete applications and use-cases. A key value of ERIS is that it is agnostic of such mechanisms and can be used from any of them.</p>
+</div>
+</div>
+</div>
+</div>
+<div class="sect1">
+<h2 id="_test_vectors"><a class="anchor" href="#_test_vectors"></a>4. Test Vectors</h2>
+<div class="sectionbody">
+<div class="sect2">
+<h3 id="_machine_readable"><a class="anchor" href="#_machine_readable"></a>4.1. Machine Readable</h3>
+<div class="paragraph">
+<p>A set of test vectors are provided in the <a href="https://gitlab.com/openengiadina/eris/-/tree/main/test-vectors">ERIS repository</a>. Implementations of the ERIS encoding MUST be able to satisfy the test vectors.</p>
+</div>
+<div class="paragraph">
+<p>The test vectors are given as machine-readable JSON files. For example the test vector <code>eris-test-vector-00.json</code>:</p>
+</div>
+<div class="listingblock">
+<div class="content">
+<pre class="highlight"><code class="language-json" data-lang="json">{
+ "id": 0,
+ "name": "short string (block size 1KiB)",
+ "description": "Encode the UTF-8 encoding of the string \"Hello world!\" with block-size 1KiB and null convergence-secret.",
+ "content": "JBSWY3DPEB3W64TMMQQQ",
+ "convergence-secret": "AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA",
+ "block-size": 1024,
+ "read-capability": {
+ "block-size": 1024,
+ "level": 0,
+ "root-reference": "H77AGSYKAVTQPUHODJTQA7WZPTWGTTKLRB2GLMF5H53NEKFJ3FUQ",
+ "root-key": "CPTDEZH4ALSLCBR7INTIBWLLGMJ7MNFFCGX7PMKEAA52KZDDFTNQ"
+ },
+ "urn": "urn:erisx2:AAAD77QDJMFAKZYH2DXBUZYAP3MXZ3DJZVFYQ5DFWC6T65WSFCU5S2IT4YZGJ7AC4SYQMP2DM2ANS2ZTCP3DJJIRV733CRAAHOSWIYZM3M",
+ "blocks": {
+ "H77AGSYKAVTQPUHODJTQA7WZPTWGTTKLRB2GLMF5H53NEKFJ3FUQ": "EWZKXK73236ETFGMMFORFLMNIPE5V3S3WDVFECUPI47RFJBA5ZMBHH6HMOZCNFQKOTADCPJMPHTZJNEW4VOKHBSNABYVIZWQDV5GQPECUBDAULOPR2S7ITYQSGGVPPEWJVEZNIUKUFR4XE7GQPUDY3FPFSCUYIISZX6PWLLPNPI5V3RKWQGN2L6LLE5G7TZ5FVPAYUHOES4LGHRKSXYCNQF6IR5HLKX2C2EPVKSU2T6XOSAF5VHUZ2GTQS7BLT3VYP5BYI2WR4GJEYDWLY26TK6ZQ2DYZZBIYSVUIY557FE6QOV3L5X5HCAQEWPYCUKUADOOSMNU7EEONPRMBJU4XLQ66AOOVRQ66OJLHANVLNFDXXPLH6KDVCJBVQWWWI7PA6OGKGPU7ZZPZT2DIBOAUGWM6DVZWWX3DA3GHWS3VY6RQMLAKDXHZRQ6VDVMLMFSULJYHACC7G57CZ2SG7XB24XT3SLJG56PO3Z7YJJYEVP44F44YCZ5YS4NRZKWS4OTFMXGNF25G3GIGSV5NEVVTSO6J5EKEXWTX74X27HYI4UZ45YF675423AWYUVTPVLUWOJMGANQRDWYOPFE5QH6JUINCH5NYZUHYPZP6WHC4IVOLYFDAUNOWLRVR37BLT5E44VVJ6XDQZAS2XT6G2XM3RJUUQEYD2RRFBWGPNSOJ2RUPE654GKHRDCKUX2MZ6D43LKI2DKCF7QEPYWJWJH6EI74NQNOLCHEAUFEXH5ZXUXO6JJ5PKOXGL4RBOGCP2X2RYXOJOCT55BAGCRQHID2TRO7NPZWGQNMSSWHOAXY6JFCVFXXGR4JM62HHXZTKODD7NYXO7EUS3GMY2NDQFENM3XKNAI5MFNLL7ERMPSIXHAJ44ASIDZS7RPZ542SLH7XONZ6PMCPI4V66ALJJTTXMJAEU35YPH3UD7UHBCM4OI3SDGTUL3TQQWMDIFBNECJN7FNAWRXTWCXM6CIILVYAITWSEDIDEMLBKR5KIGE5SQTW2ITIIA725SNZO3PJMQCAPJI4H3QXVPKG4OZIOTENU2VW3W3PNAYVE65YJBQGPY6M6LRQYGPYYSEFTRPW3YXGGC2ICFROUD7FXCFXVD6OWA4B6LDFDX4LPF4H7525BVRBNW2ZLMXZUXCFZSZOSSP7VKBCWIDJ72XSR43YFKTL5TADVXDF3RN2HHAGKXWOXINMJJLRE4K72H54IOROFS4FD5QYXWSJWH4ENYC4PAOJ6JELRFYC6RMXP73VR745WY4ZOFQTRQ5ZEA2C3M7JTQUVKV26XGVVHBYA7NEMRPZNVRXHCKYN3CGJSICBUFGMHSSDBTRIF3BCPVMLRBU25DFGGM4LEEL4KTIAJITYY5XPR4XDRD55PEDVOUL342IXCNEBTTPPLMPV6EJYUFJS42R4XLDOT7NOFPLTZUBLWSLL7IVZNPNI6DZ4CR7YEQP72DDUWDJJTKACT35JLFPDW3M2VUOJF3CUWN6FYN5YJJSXYMXSVDZDVIAJYF2HOPQEHLMRF3MJAXMTLMCOIARLFZKAGRSW6PWQZ7ZJLCQAPSJTPNDA2SLUA3UHH34NWEPTAVWOBDPNTMT27TK5P4VKLE2YEJHKWE6SJA3V7A3UPQS24SWDJ2BPOV7JG23ZVIA"
+ }
+}</code></pre>
+</div>
+</div>
+<div class="paragraph">
+<p>The fields of JSON test vectors are:</p>
+</div>
+<div class="dlist">
+<dl>
+<dt class="hdlist1"><code>id</code> </dt>
+<dd>
+<p>Numeric identifier of the test vector.</p>
+</dd>
+<dt class="hdlist1"><code>name</code> </dt>
+<dd>
+<p>Short human readable name.</p>
+</dd>
+<dt class="hdlist1"><code>description</code> </dt>
+<dd>
+<p>Human readable description of the test.</p>
+</dd>
+<dt class="hdlist1"><code>content</code> </dt>
+<dd>
+<p>The binary content to be encoded as Base32 (unpadded) string.</p>
+</dd>
+<dt class="hdlist1"><code>convergence-secret</code> </dt>
+<dd>
+<p>The convergence secret to be used as Base32 string.</p>
+</dd>
+<dt class="hdlist1"><code>block-size</code> </dt>
+<dd>
+<p>Block size that should be used for encoding in bytes (either 1024 or 32768).</p>
+</dd>
+<dt class="hdlist1"><code>read-capability</code> </dt>
+<dd>
+<p>JSON map containing the components of the read capability. This is not used in tests but is here as a help for developers.</p>
+</dd>
+<dt class="hdlist1"><code>urn</code> </dt>
+<dd>
+<p>The ERIS URN of the content.</p>
+</dd>
+<dt class="hdlist1"><code>blocks</code> </dt>
+<dd>
+<p>A JSON map of blocks required to decode the content given the URN. Key and field are encoded as Base32 strings.</p>
+</dd>
+</dl>
+</div>
+<div class="paragraph">
+<p>Implementations MUST verify that the content encodes to the URN given the specified block size and convergence secret and verify that given the URN and blocks the content can be decoded.</p>
+</div>
+</div>
+<div class="sect2">
+<h3 id="_large_content"><a class="anchor" href="#_large_content"></a>4.2. Large content</h3>
+<div class="paragraph">
+<p>In order to verify implementations that encode content by streaming (see <a href="#_streaming">Section 2.4.4</a>) URNs of large contents that are generated in a specified way are provided:</p>
+</div>
+<table class="tableblock frame-all grid-all stretch">
+<colgroup>
+<col style="width: 20%;">
+<col style="width: 20%;">
+<col style="width: 20%;">
+<col style="width: 20%;">
+<col style="width: 20%;">
+</colgroup>
+<tbody>
+<tr>
+<td class="tableblock halign-left valign-top"><p class="tableblock">Test name</p></td>
+<td class="tableblock halign-left valign-top"><p class="tableblock">Content size</p></td>
+<td class="tableblock halign-left valign-top"><p class="tableblock">Block size</p></td>
+<td class="tableblock halign-left valign-top"><p class="tableblock">URN</p></td>
+<td class="tableblock halign-left valign-top"><p class="tableblock">Level of root reference</p></td>
+</tr>
+<tr>
+<td class="tableblock halign-left valign-top"><p class="tableblock">100MiB (block size 1KiB)</p></td>
+<td class="tableblock halign-left valign-top"><p class="tableblock">100MiB</p></td>
+<td class="tableblock halign-left valign-top"><p class="tableblock">1KiB</p></td>
+<td class="tableblock halign-left valign-top"><p class="tableblock"><code>urn:erisx2:AACXPZNDNXFLO4IOMF6VIV2ZETGUJEUU7GN4AHPWNKEN6KJMCNP6YNUMVW2SCGZUJ4L3FHIXVECRZQ3QSBOTYPGXHN2WRBMB27NXDTAP24</code></p></td>
+<td class="tableblock halign-left valign-top"><p class="tableblock">5</p></td>
+</tr>
+<tr>
+<td class="tableblock halign-left valign-top"><p class="tableblock">1GiB (block size 32KiB)</p></td>
+<td class="tableblock halign-left valign-top"><p class="tableblock">1GiB</p></td>
+<td class="tableblock halign-left valign-top"><p class="tableblock">32KiB</p></td>
+<td class="tableblock halign-left valign-top"><p class="tableblock"><code>urn:erisx2:AEBFG37LU5BM5N3LXNPNMGAOQPZ5QTJAV22XEMX3EMSAMTP7EWOSD2I7AGEEQCTEKDQX7WCKGM6KQ5ALY5XJC4LMOYQPB2ZAFTBNDB6FAA</code></p></td>
+<td class="tableblock halign-left valign-top"><p class="tableblock">2</p></td>
+</tr>
+<tr>
+<td class="tableblock halign-left valign-top"><p class="tableblock">256GiB (block size 32KiB)</p></td>
+<td class="tableblock halign-left valign-top"><p class="tableblock">256GiB</p></td>
+<td class="tableblock halign-left valign-top"><p class="tableblock">32KiB</p></td>
+<td class="tableblock halign-left valign-top"><p class="tableblock"><code>urn:erisx2:AEBZHI55XJYINGLXWKJKZHBIXN6RSNDU233CY3ELFSTQNSVITBSVXGVGBKBCS4P4M5VSAUOZSMVAEC2VDFQTI5SEYVX4DN53FTJENWX4KU</code></p></td>
+<td class="tableblock halign-left valign-top"><p class="tableblock">3</p></td>
+</tr>
+</tbody>
+</table>
+<div class="paragraph">
+<p>Content is the ChaCha20 stream using a null nonce and the key which is the Blake2b hash of the UTF-8 encoded test name (e.g. <code>KEY := Blake2b-256("100MiB (block size 1KiB)")</code>). The ChaCha20 stream can be computed by encoding a null byte sequence (e.g. <code>CHACHA20_STREAM := ChaCha20(NULL, KEY)</code>).</p>
+</div>
+</div>
+</div>
+</div>
+<div class="sect1">
+<h2 id="_implementations"><a class="anchor" href="#_implementations"></a>5. Implementations</h2>
+<div class="sectionbody">
+<div class="paragraph">
+<p>A list of known implementations that satisify the test vectors:</p>
+</div>
+<table class="tableblock frame-all grid-all stretch">
+<colgroup>
+<col style="width: 20%;">
+<col style="width: 20%;">
+<col style="width: 20%;">
+<col style="width: 20%;">
+<col style="width: 20%;">
+</colgroup>
+<thead>
+<tr>
+<th class="tableblock halign-left valign-top">Name</th>
+<th class="tableblock halign-left valign-top">Programming language</th>
+<th class="tableblock halign-left valign-top">License</th>
+<th class="tableblock halign-left valign-top">Notes</th>
+<th class="tableblock halign-left valign-top">Homepage</th>
+</tr>
+</thead>
+<tbody>
+<tr>
+<td class="tableblock halign-left valign-top"><p class="tableblock"><code>guile-eris</code></p></td>
+<td class="tableblock halign-left valign-top"><p class="tableblock">Guile</p></td>
+<td class="tableblock halign-left valign-top"><p class="tableblock">GPL-3.0-or-later</p></td>
+<td class="tableblock halign-left valign-top"><p class="tableblock">Reference implementation</p></td>
+<td class="tableblock halign-left valign-top"><p class="tableblock"><a href="https://gitlab.com/openengiadina/eris/" class="bare">https://gitlab.com/openengiadina/eris/</a></p></td>
+</tr>
+<tr>
+<td class="tableblock halign-left valign-top"><p class="tableblock"><code>elixir-eris</code></p></td>
+<td class="tableblock halign-left valign-top"><p class="tableblock">Elixir</p></td>
+<td class="tableblock halign-left valign-top"><p class="tableblock">GPL-3.0-or-later</p></td>
+<td class="tableblock halign-left valign-top"><p class="tableblock">Used in the <a href="https://gitlab.com/openengiadina/cpub">CPub</a> ActivityPub server</p></td>
+<td class="tableblock halign-left valign-top"><p class="tableblock"><a href="https://gitlab.com/openengiadina/elixir-eris/" class="bare">https://gitlab.com/openengiadina/elixir-eris/</a></p></td>
+</tr>
+</tbody>
+</table>
+<div class="paragraph">
+<p>Further implementations are being developed in <a href="https://github.com/cjslep/eris/">Go</a>, <a href="https://hg.sr.ht/~arnebab/wisperis/">Wisp</a>, <a href="https://gitlab.com/openengiadina/js-eris">JavaScript</a> (needs to be updated to this version of the encoding) and <a href="https://gitlab.com/public.dream/dromedar/ocaml-eris">OCaml</a>.</p>
+</div>
+</div>
+</div>
+<div class="sect1">
+<h2 id="_acknowledgments"><a class="anchor" href="#_acknowledgments"></a>6. Acknowledgments</h2>
+<div class="sectionbody">
+<div class="paragraph">
+<p>Thanks to Cory Slep, Arne Babenhauserheide, Serge Wroclawski, Christopher Lemmer Webber, Christian Grothoff, Natacha, Hellekin, Nemael, TG, Devan, Emery, Arie, Allen and many others for the discussions, suggestions and support.</p>
+</div>
+<div class="paragraph">
+<p>Development of ERIS has been supported by the <a href="https://nlnet.nl">NLNet Foundation</a> trough the <a href="https://nlnet.nl/discovery/">NGI0 Discovery Fund</a>.</p>
+</div>
+</div>
+</div>
+<div class="sect1">
+<h2 id="_changelog"><a class="anchor" href="#_changelog"></a>Changelog</h2>
+<div class="sectionbody">
+<div class="paragraph">
+<p>The most recent version is published at <a href="http://purl.org/eris" class="bare">http://purl.org/eris</a>.</p>
+</div>
+<h3 id="_v0_2_0_7_december_2020" class="discrete"><a href="eris-v0.2.0.html">v0.2.0 (7. December 2020)</a></h3>
+<div class="paragraph">
+<p>Major update of encoding that removes the <em>verification capability</em> - ability to verify integrity of content without reading content.</p>
+</div>
+<h3 id="_v0_1_0_11_june_2020" class="discrete"><a href="eris-v0.1.html">v0.1.0 (11. June 2020)</a></h3>
+<div class="paragraph">
+<p>Initial version.</p>
+</div>
+</div>
+</div>
+<div class="sect1">
+<h2 id="_copyright"><a class="anchor" href="#_copyright"></a>Copyright</h2>
+<div class="sectionbody">
+<div class="paragraph">
+<p>This work is licensed under a <a href="http://creativecommons.org/licenses/by-sa/4.0/">Creative Commons Attribution-ShareAlike 4.0 International License</a>.</p>
+</div>
+</div>
+</div>
+<div class="sect1">
+<h2 id="_references"><a class="anchor" href="#_references"></a>References</h2>
+<div class="sectionbody">
+<div class="sect2">
+<h3 id="_normative_references"><a class="anchor" href="#_normative_references"></a>Normative References</h3>
+<div class="ulist bibliography">
+<ul class="bibliography">
+<li>
+<p><a id="RFC2119"></a>[RFC2119] S. Bradner, <a href="https://tools.ietf.org/html/rfc2119">Key words for use in RFCs to Indicate Requirement Levels</a>, 1997.</p>
+</li>
+<li>
+<p><a id="RFC4648"></a>[RFC4648] S. Josefsson, <a href="https://tools.ietf.org/html/rfc4648">The Base16, Base32, and Base64 Data Encodings</a>, 2006.</p>
+</li>
+<li>
+<p><a id="RFC7693"></a>[RFC7693] M-J. Saarinen and J-P. Aumasson, <a href="https://tools.ietf.org/html/rfc7693">The BLAKE2 Cryptographic Hash and Message Authentication Code (MAC)</a>, 2015.</p>
+</li>
+<li>
+<p><a id="RFC8439"></a>[RFC8439] Nir and Langley, <a href="https://tools.ietf.org/html/rfc8439">ChaCha20 and Poly1305 for IETF Protocols</a>, 2018.</p>
+</li>
+<li>
+<p><a id="RFC8141"></a>[RFC8141] Saint-Andre, Filament and Klensin, <a href="https://tools.ietf.org/html/rfc8141">Uniform Resource Names (URNs)</a>, 2017.</p>
+</li>
+</ul>
+</div>
+</div>
+<div class="sect2">
+<h3 id="_informative_references"><a class="anchor" href="#_informative_references"></a>Informative References</h3>
+<div class="ulist bibliography">
+<ul class="bibliography">
+<li>
+<p><a id="ActivityStreams"></a>[ActivityStreams] Snell and Prodromou, <a href="https://www.w3.org/TR/activitystreams-core/">Activity Streams 2.0</a>, 2017.</p>
+</li>
+<li>
+<p><a id="BEP52"></a>[BEP52] <a href="http://bittorrent.org/beps/bep_0052.html">The BitTorrent Protocol Specification v2</a>, 2017.</p>
+</li>
+<li>
+<p><a id="DMC"></a>[DMC] pukkamustard, <a href="http://purl.org/dmc/spec">Distributed Mutable Containers</a>, 2020.</p>
+</li>
+<li>
+<p><a id="ECRS"></a>[ECRS] Grothoff, et al., <a href="https://grothoff.org/christian/ecrs.pdf">An encoding for censorship-resistant sharing</a>, 2003.</p>
+</li>
+<li>
+<p><a id="Freenet"></a>[Freenet] Clarke, et al., <a href="http://bourbon.usc.edu/cs694-s09/papers/freenet.pdf">Freenet: A distributed anonymous information storage and retrieval system</a>, 2001.</p>
+</li>
+<li>
+<p><a id="MLS"></a>[MLS] Omara, et al., <a href="https://messaginglayersecurity.rocks/mls-architecture/draft-ietf-mls-architecture.html">The Messaging Layer Security (MLS) Architecture (DRAFT)</a>, 2020.</p>
+</li>
+<li>
+<p><a id="OMEMO"></a>[OMEMO] Straub, et al., <a href="https://xmpp.org/extensions/xep-0384.html">XEP-0384: OMEMO Encryption</a>, 2020.</p>
+</li>
+<li>
+<p><a id="Polleres2020"></a>[Polleres2020] Polleres, et al., <a href="https://epub.wu.ac.at/6371/1/IPM_workingpaper_02_2018.pdf">A more decentralized vision for Linked Data</a>, 2020.</p>
+</li>
+<li>
+<p><a id="RDF-Signify"></a>[RDF-Signify] pukkamustard, <a href="http://purl.org/signify/spec">RDF Signify</a>, 2020.</p>
+</li>
+<li>
+<p><a id="RFC7927"></a>[RFC7927] Kutscher et. al. <a href="https://tools.ietf.org/html/rfc7927">Information-Centric Networking (ICN) Research Challenges</a>, 2016.</p>
+</li>
+<li>
+<p><a id="Zooko2008"></a>[Zooko2008] Zooko Wilcox-O&#8217;Hearn. <a href="https://tahoe-lafs.org/hacktahoelafs/drew_perttula.html">Drew Perttula and Attacks on Convergent Encryption</a>, 2008.</p>
+</li>
+</ul>
+</div>
+</div>
+</div>
+</div>
+</div>
+<div id="footnotes">
+<hr>
+<div class="footnote" id="_footnotedef_1">
+<a href="#_footnoteref_1">1</a>. This padding algorithm is apparently also specified in ISO/IEC 7816-4. However, the speicifcation is not openly available. So, fuck you ISO.
+</div>
+</div>
+<div id="footer">
+<div id="footer-text">
+Version 0.2.0<br>
+Last updated 2020-12-07 09:14:03 +0100
+</div>
+</div>
+</body>
+</html> \ No newline at end of file
diff --git a/public/index.html b/public/index.html
index 8dad44c..9c60666 100644
--- a/public/index.html
+++ b/public/index.html
@@ -442,7 +442,8 @@ body.book #toc,body.book #preamble,body.book h1.sect0,body.book .sect1>h2{page-b
<div class="details">
<span id="author" class="author">pukkamustard</span><br>
<span id="email" class="email"><a href="mailto:pukkamustard@posteo.net">pukkamustard@posteo.net</a></span><br>
-<span id="revdate">0.2.0-draft</span>
+<span id="revnumber">version 0.2.0,</span>
+<span id="revdate">2020-12-07</span>
</div>
<div id="toc" class="toc2">
<div id="toctitle">Table of Contents</div>
@@ -1794,7 +1795,10 @@ ERIS-Decode(BLOCK-SIZE, LEVEL, ROOT-REFERENCE, ROOT-KEY):
<div class="sect1">
<h2 id="_changelog"><a class="anchor" href="#_changelog"></a>Changelog</h2>
<div class="sectionbody">
-<h3 id="_v0_2_0_draft_unreleased" class="discrete"><a href="http://purl.org/eris">v0.2.0-draft (UNRELEASED)</a></h3>
+<div class="paragraph">
+<p>The most recent version is published at <a href="http://purl.org/eris" class="bare">http://purl.org/eris</a>.</p>
+</div>
+<h3 id="_v0_2_0_7_december_2020" class="discrete"><a href="eris-v0.2.0.html">v0.2.0 (7. December 2020)</a></h3>
<div class="paragraph">
<p>Major update of encoding that removes the <em>verification capability</em> - ability to verify integrity of content without reading content.</p>
</div>
@@ -1866,7 +1870,7 @@ ERIS-Decode(BLOCK-SIZE, LEVEL, ROOT-REFERENCE, ROOT-KEY):
<p><a id="Polleres2020"></a>[Polleres2020] Polleres, et al., <a href="https://epub.wu.ac.at/6371/1/IPM_workingpaper_02_2018.pdf">A more decentralized vision for Linked Data</a>, 2020.</p>
</li>
<li>
-<p><a id="RDF-Signify"></a>[RDF-Signify] pukkamustard, <a href="https://openengiadina.net/papers/rdf-signify.html">RDF Signify</a>, 2020.</p>
+<p><a id="RDF-Signify"></a>[RDF-Signify] pukkamustard, <a href="http://purl.org/signify/spec">RDF Signify</a>, 2020.</p>
</li>
<li>
<p><a id="RFC7927"></a>[RFC7927] Kutscher et. al. <a href="https://tools.ietf.org/html/rfc7927">Information-Centric Networking (ICN) Research Challenges</a>, 2016.</p>
@@ -1888,7 +1892,8 @@ ERIS-Decode(BLOCK-SIZE, LEVEL, ROOT-REFERENCE, ROOT-KEY):
</div>
<div id="footer">
<div id="footer-text">
-Last updated 2020-12-06 20:52:09 +0100
+Version 0.2.0<br>
+Last updated 2020-12-07 09:14:03 +0100
</div>
</div>
</body>